Stardust Chollima

North Korea

Details

STARDUST CHOLLIMA is a Democratic People’s Republic of Korea (DPRK)-nexus adversary that has been active operationally since at least 2015 and is affiliated with large-scale currency generation operations. CrowdStrike Intelligence assesses that STARDUST CHOLLIMA likely represents an element of Bureau 121 of the DPRK’s Reconnaissance General Bureau (RGB) based on public disclosures by the U.S. gove...

Community Identifiers

Yhkz0PdsT8IoxUB

Objective

  • cnJXTuZVadAb6I0
  • AgjbW91fZacVzwSINXxoqiR

Motivation

  • Z49jTfOzIMhWPav
  • fgGq2H3Z

Contact our team about
IOCs for this adversary

?

During a cybersecurity incident, indicators of compromise (IoC) are clues and evidence of a data breach.