North Korean hackers attempted theft of millions from Mexican bank

An elite group of North Korean hackers has been identified as responsible for cyberattacks on banks around the world — including Mexico’s state-owned development bank Bancomext — that netted hundreds of millions of dollars, security researchers said yesterday.

A report by United States cybersecurity company FireEye said the mission of the newly-identified group, dubbed APT38, is to raise funds for the North Korean regime headed by Supreme Leader Kim Jong-un.

“They are a cyber-criminal group with the skills of a cyber espionage campaign,” said Sandra Joyce, FireEye’s vice-president of intelligence. “They take their time to learn the intricacies of the organization.”

The attack on Bancomext occurred in early January and attempted to steal around US $110 million but was shut down before the funds were removed.

“Fortunately, the protocol and quick reaction of the area responsible for operation, with the help of banks, corresponding authorities and the Bank of México, contained this incident,” Bancomext said in a statement.

In May, the Bank of México revealed that five financial institutions had been targeted by cyberattacks that resulted in the loss of 300 million pesos (US $ 15.7 million at today’s exchange rate) although it is unclear whether the North Korean group was the source of the attacks.

The FireEye report said that APT38 is one of several hacking cells within a larger umbrella group known as “Lazarus” but that it has unique skills and tools that have allowed it to carry out some of the world’s largest cyber heists.

Joyce said that APT38 takes several months or longer to learn the workings of its targets before it launches an attack.

Once it succeeds in extracting funds, “they deploy destructive malware on their way out” to hide its traces, she added.

Joyce explained that FireEye decided to go public with its investigation because the group appears to be still operating and is “undeterred by any diplomatic efforts.”

APT38 appears to have “the scope and resources of a nation state,” she added.

Nalani Fraser, a member of the FireEye research team, said that APT38 attacks have attempted to steal at least US $1.1 billion since 2014 and have succeeded in siphoning off “hundreds of millions of dollars based on data that we can confirm.”

Source: AFP (sp) 

Have something to say? Paid Subscribers get all access to make & read comments.
Manzanillo, Colima, México, 13 de marzo de 2026. La doctora Claudia Sheinbaum Pardo, presidenta Constitucional de los Estados Unidos Mexicanos en conferencia de prensa matutina, “Conferencia del Pueblo” desde Colima. La acompañan Indira Vizcaíno Silva, gobernadora Constitucional del Estado de Colima; Omar García Harfuch, secretario de Seguridad y Protección Ciudadana (SSPC); Raymundo Pedro Morales Ángeles, secretario de Marina (Semar); Bulmaro Juárez Pérez, divulgador de lenguas originarias, presentador de la sección “Suave Patria”; Ricardo Trevilla Trejo, secretario de la Defensa Nacional (Sedena); Jesús Antonio Esteva Medina, secretario de Infraestructura, Comunicaciones y Transportes; Bryant Alejandro García Ramírez, fiscal general del Estado de Colima; Fabián Ricardo Gómez Calcáneo; Rocío Bárcena Molina, subsecretaria de Desarrollo Democrático, Participación Social y Asuntos Religiosos de la Secretaría de Gobernación; Efraín Morales López, director general de la Comisión Nacional del Agua (Conagua); Marcela Figueroa Franco, secretaria ejecutiva del Sistema Nacional de Seguridad Pública (SESNSP) y Guillermo Briseño Lobera, comandante de la Guardia Nacional (GN). Foto: Saúl López / Presidencia

Mexico’s week in review: Congress deals Sheinbaum her first legislative defeat

0
The week of March 9 in Mexico was marked by standoffs between allies in Congress and adversaries at the airport. Here's what you missed.
A soldier displays seized handguns

The US and Mexico, growing together and growing apart: A perspective from our CEO

0
From a historic drop in homicides to opposite bets on electric vehicles, Mexico News Daily's CEO breaks down where the U.S. and Mexico are converging — and where they're not.
Veracruz Gov.

Veracruz governor blames private vessel for 200-kilometer Gulf Coast oil spill

1
The spill, which has spread to over 200 kilometers of Mexico's Gulf Coast beaches, has been traced to a private oil tanker off the coast of Tabasco.
BETA Version - Powered by Perplexity