概要: 北朝鮮のIT労働者は、AIツールを使ってID偽装を行い、チャットボットを使ってリアルタイムの面接支援を行い、米国や欧米企業のリモートワークの職を得ていると報じられている。これらの職は機密システムへのアクセスを許可し、意図せずして北朝鮮政権に流入すると思われる収入を生み出しているとの報告がある。
Editor Notes: This incident ID functions as a cluster-level anchor for ongoing reports since 2021 involving suspected North Korean IT workers reportedly using AI tools (such as facial alteration for identity spoofing and chatbot-based interview assistance) to gain employment in Western companies. The incidents span multiple operations and may involve thousands of actors operating across freelance platforms, third-party facilitators, and front companies. Discrete incident IDs may be developed from this entry as more bounded and independently verifiable cases emerge. While some sources trace this phenomenon to 2014 (with an acceleration during 2020 owing to COVID-19), this incident ID sets 01/01/2021 as its start date to reflect the period in which AI tools were reportedly integrated into infiltration methods. For additional historical context, see: https://en.wikipedia.org/wiki/North_Korean_remote_worker_infiltration_scheme. While there is no confirmed link between Research Center 227 and these specific operations, available reporting indicates that the center functions within a related operational ecosystem. See also Incidents 644 and 1117. U.S. government advisories and indictment press releases are tagged as responses for this incident ID. KnowBe4's reports are also marked with the response tag, but from the standpoint of a company describing itself as a victim of the implicated technology, not its developer.
Alleged: Unknown large language model developers と Unknown deepfake technology developers developed an AI system deployed by Reconnaissance General Bureau , Lazarus Group , Government of North Korea と Department 53, which harmed Western companies と Companies in the United States.
インシデントのステータス
インシデントID
1118
レポート数
20
インシデント発生日
2021-01-01
エディタ
Daniel Atherton