A North Korean individual posing as an information technology contractor remotely worked for a major New Zealand company before threatening to disclose sensitive information after being exposed, New Zealand’s National Cyber Security Centre (NCSC) reported.
The NCSC said the contractor maintained a fabricated identity, including counterfeit identification documents and a false New Zealand address, to secure the remote position with the firm. Additionally, the person enlisted a New Zealand citizen to receive and manage the company-issued laptop used in the assignment.
Over time, the company grew suspicious of the contractor’s true background, prompting an investigation that confirmed the individual was based in North Korea. Upon learning of this, the employer terminated the contract and withheld payment for services rendered.
Following the termination, the contractor allegedly claimed to possess commercially sensitive information and threatened to release it unless compensated.
North Korea is subject to extensive international sanctions related to its weapons and nuclear activities, including prohibitions on issuing work visas to its citizens for employment abroad.
The NCSC's disclosure highlights potential security risks associated with remote working arrangements, particularly involving individuals from countries under international restrictions. The investigation into the incident underscores the challenges companies face in verifying identities and protecting sensitive information in a global, digital workforce.
