Stardust Chollima

North Korea

Details

STARDUST CHOLLIMA is a Democratic People’s Republic of Korea (DPRK)-nexus adversary that has been active operationally since at least 2015 and is affiliated with large-scale currency generation operations. CrowdStrike Intelligence assesses that STARDUST CHOLLIMA likely represents an element of Bureau 121 of the DPRK’s Reconnaissance General Bureau (RGB) based on public disclosures by the U.S. gove...

Community Identifiers

2dIwUuE4NRmOher

Objective

  • X0L4i2YTIcSU3a5
  • fmv5sekCrML3Tpo7zZAwnuI

Motivation

  • cAT8zJoQ7lCbxsr
  • RQXTutOs

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.