EPISODE · May 8, 2026 · 3 MIN
How North Korea's Fake Company Compromised Millions | 2 Minute Drill with Drex DeFord
North Korean threat actors didn't breach a firewall. They built a fake company. UNC1069 spent two weeks constructing a convincing Slack workspace, fake team members, and LinkedIn profiles to earn the trust of Jason Seaman -- lead maintainer of Axios, a JavaScript library downloaded over 100 million times a week. One Teams call. One file. Within hours, malicious code was live and reaching health systems everywhere. The attack skipped the $50M security stack entirely and went straight to the human. Drex breaks down what happened, why it worked, and asks the question every health IT leader needs to answer: have you mapped who in your organization carries that kind of leverage?Remember, Stay a Little ParanoidX: This Week Health LinkedIn: This Week Health Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
Embed this episode
Ready to play
How North Korea's Fake Company Compromised Millions | 2 Minute Drill with Drex DeFord
No transcript for this episode yet
Similar Episodes
No similar episodes found.