North Korean remote IT staffer worked for US government agency, says FBI

3 days ago 15
A 24-hour Yonhapnews TV broadcast astatine  Yongsan Railway Station successful  Seoul showing North Korean person  Kim Jong Un.Image Credits:Kim Jae-Hwan/SOPA Images/LightRocket / Getty Images

6:40 AM PDT · August 11, 2026

The FBI is reportedly investigating however a North Korean was hired to enactment for a U.S. national authorities agency.

News of the probe was first reported by Federal News Network, citing a elder FBI authoritative speaking astatine a league connected July 28 successful Washington, D.C.. The authoritative confirmed to Federal News Network that the FBI is investigating a North Korean moving for an unnamed national agency.

It’s unclear however the North Korean was hired, but the authorities is known for its coordinated and long-running campaigns aimed astatine fraudulently obtaining employment astatine backstage organizations and multinationals. The lawsuit marks a uncommon confirmed lawsuit of a sanctioned North Korean moving for a authorities agency.

There are thought to beryllium thousands of North Korean IT workers who person gained employment with U.S. and European organizations successful caller years by exploiting weaknesses successful the hiring process. The extremity is to usage fraudulent identities to summation employment with distant positions and to gain a wage that gets funneled backmost to the regime, each the portion stealing intelligence spot and different data, past utilizing that accusation to extort the companies erstwhile they are inevitably caught.

But strict vetting and information clearance practices person mostly kept the regime’s hackers retired of authorities — though, not without incident. The Justice Department brought charges successful 2024 against a Maryland antheral who assisted a North Korean hacker to airs arsenic an American to get a distant occupation arsenic a contractor for the Federal Aviation Administration.

The FBI did not respond to TechCrunch’s petition for remark connected Tuesday, and it’s unclear which national bureau was affected, and if immoderate information oregon funds were stolen during the incident.

The U.S. has agelong warned astir the risks posed by North Korean IT workers’ schemes. U.S. authorities person taken several enforcement actions and sanctions to stymie some the networks that run from Pyongyang, arsenic good arsenic neighboring Russia and China, arsenic good arsenic the American facilitators who acceptable up fleets of laptops that let the North Koreans to enactment remotely arsenic if they were successful the United States.

North Korea operates much similar a transnational transgression pack than a government, and relies connected hacks, including thefts of cryptocurrency, to money its globally sanctioned atomic weapons program. The Kim Jong Un authorities is reportedly responsible for 76% of cryptocurrency thefts, per blockchain forensic firms, netting the authorities at slightest $2 cardinal during 2025 contempt being banned from the planetary fiscal system.

When you acquisition done links successful our articles, we whitethorn gain a tiny commission. This doesn’t impact our editorial independence.

Zack Whittaker is the information exertion astatine TechCrunch. He besides authors the play cybersecurity newsletter, this week successful security.

He tin beryllium reached via encrypted connection astatine zackwhittaker.1337 connected Signal. You tin besides interaction him by email, oregon to verify outreach, astatine zack.whittaker@techcrunch.com.

Read Entire Article