
A North Korean hacking group has built large language model tools to automate cyberattacks, analyse stolen data and create more convincing phishing scams, South Korean cybersecurity firm Genians reported. The group, Kimsuky,…
A North Korean hacking group has built large language model tools to automate cyberattacks, analyse stolen data and create more convincing phishing scams, South Korean cybersecurity firm Genians reported. The group, Kimsuky, set up software including Ollama, GPT4All and retrieval augmented generation (RAG) technology to run AI models locally, avoiding external cloud services.

Genians found AI-assisted coding tools, speech-to-text software and finance-themed decoy documents generated by AI to trick targets. The findings suggest Kimsuky is moving beyond using AI for phishing lures to integrating it into malware development and attack automation. The US Treasury sanctioned Kimsuky in 2023 as a North Korean state-controlled cyber-espionage group.
Another week, another AI-enabled hacking scare. The reflexive narrative is that technology is outpacing defences, leaving ordinary Indians helpless. But the real story here is about North Korea's state-backed cyber units, not about AI itself. Kimsuky has been stealing secrets and laundering money for years long before ChatGPT. The question is not whether AI makes phishing more convincing, but whether Indian companies and government agencies have even patched basic vulnerabilities. Until they fix the door, it does not matter what lock the thief is carrying.
Sources (2): timesnownews.com, deccanchronicle.com
This story was synthesised by AI from the 2 sources linked above.
Updated: this story now draws on 2 sources.