A North Korean imposter was uncovered, working as a sysadmin at Amazon U.S., after their keystroke input lag raised suspicions with security specialists at the online retail giant. Normally, a U.S.-based remote worker’s computer would send keystroke data within tens of milliseconds. This suspicious individual’s keyboard lag was “more than 110 milliseconds,” reports Bloomberg.

Amazon is commendably proactive in its pursuit of impostors, according to the source report. The news site talked with Amazon’s Chief Security Officer, Stephen Schmidt, about this fascinating new case of North Koreans trying to infiltrate U.S. organizations to raise hard currency for the Democratic People’s Republic of Korea (DPRK), and sometimes indulge in espionage and/or sabotage.

  • BoycottTwitter@lemmy.zip
    link
    fedilink
    English
    arrow-up
    9
    arrow-down
    1
    ·
    2 hours ago

    I don’t like Amazon but I will admit here I got to respect both the fact that they disclosed this instead of hid it and the fact that they are actively looking for this instead of burying their heads in the sand.

  • Joe Bidet@lemmy.ml
    link
    fedilink
    English
    arrow-up
    202
    arrow-down
    2
    ·
    22 hours ago

    Sounds much better than “Amazon surveils keystrokes of its IT workers”!

    • stoly@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      5 hours ago

      This was also my takeaway. Sounds like a security nightmare if they are logging any data.

  • ☂️-@lemmy.ml
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    9
    ·
    6 hours ago

    weasel language. the “infiltrators” are literally working a job for them.

    • treesquid@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      arrow-down
      2
      ·
      2 hours ago

      Correct. The hostile actor gained employment with their victim, a common method of infiltration. You should look up the definition of infiltration.

        • Soulg@ani.social
          link
          fedilink
          English
          arrow-up
          2
          ·
          46 minutes ago

          It can be if that’s the purpose. But considering it’s NK it is almost certainly a government attempt to infiltrate.

          But considering youre from .ml I doubt you’ll ever acknowledge lol

        • vaultdweller013@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          2
          ·
          1 hour ago

          It kinda is, its practically a requirement for a lot of corporate espionage and a lot of spies have entire lives alongside their spy duties. Also fun joke I’ve heard about Vladivostok during the Cold war, “There were surprisingly only a handful of people in that city, American spies, Soviet counter intelligence, smugglers, cargo movers, and baristas who ignored the whole mess” heard that from an ex-CIA guy who was doing a talk at a spy exhibit back when I was a kid.

    • UnderpantsWeevil@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      3
      ·
      2 hours ago

      Yeah, and its curious to see you getting downvotes for the intra-departmental outsourcing that’s been rampant through the tech sector for a while now.

      What we’ve got isn’t some nefarious plot by the Chinese-Adjacent to invade our precious trillion dollar tech industry. Its the deliberate consequence of sanctioning a country to the hilt to devalue local labor, then exploiting the sanctioned locals to extract labor at below market rate.

    • CanadaPlus@lemmy.sdf.org
      link
      fedilink
      English
      arrow-up
      17
      arrow-down
      1
      ·
      edit-2
      8 hours ago

      Literally, catching North Koreans might have been the idea. It’s become a big issue.

      Probably one of the less shocking things they track.

        • DylanMc6 [any, any]@lemmy.ml
          link
          fedilink
          English
          arrow-up
          2
          ·
          1 hour ago

          the amazon workers DOESN’T deserve to get pushed around by jeff bezos - the best way to remedy this is by educating these workers on socialism and organizing, and give them the tools they need to collectivize the warehouse. seriously!

  • gerowen@piefed.social
    link
    fedilink
    English
    arrow-up
    88
    arrow-down
    11
    ·
    1 day ago

    I’m never quite sure how to feel about this. On one hand, if the person just wants to make some money and they’re doing the job, why bother them. On the other hand though, I know that anybody who has consistent access to an internet connection in North Korea is almost certainly working for the benefit of the great leader and they aren’t actually seeing any money or benefit for themselves. I just hate that the citizens of North Korea have to suffer and be punished because of their asswipe of a leader.

    • pilferjinx@piefed.social
      link
      fedilink
      English
      arrow-up
      64
      arrow-down
      1
      ·
      1 day ago

      When you look at the ISS pics of NK during the night, you get a sense of how bad it is for most of the population.

        • UnderpantsWeevil@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          arrow-down
          2
          ·
          1 hour ago

          Always curious to hear how NK has no electricity, but they manage to hack the systems of a trillion dollar conglomerate on the opposite side of the Pacific Ocean.

          The contradictions abound.

          • Soulg@ani.social
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            44 minutes ago

            Do you seriously not realize that the corrupt dictatorial government might have a bit more quality of life things and resources than the oppressed peasant class?

          • nomy@lemmy.zip
            link
            fedilink
            English
            arrow-up
            10
            ·
            7 hours ago

            An entire country of astronomy nerds sounds like a tourist destination to me!

      • Serinus@lemmy.world
        link
        fedilink
        English
        arrow-up
        13
        arrow-down
        1
        ·
        20 hours ago

        It kind of amazes me they don’t have better infrastructure. It’s not like they’re shy about forced labor.

        • Honytawk@feddit.nl
          link
          fedilink
          English
          arrow-up
          11
          ·
          15 hours ago

          You can only do so much with forced labour. They aren’t doing their best, just “enough” to not get punished.

          I’m sure plenty of them also use malicious compliance and sabotage stuff to get back at the top brass.

          • UnderpantsWeevil@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            ·
            2 hours ago

            You can only do so much with forced labour.

            There’s a certain irony in this statement, coming from folks who consume it regularly.

      • mrgoosmoos@lemmy.ca
        link
        fedilink
        English
        arrow-up
        9
        arrow-down
        1
        ·
        20 hours ago

        seeing the stars instead of light pollution doesn’t sound like a bad thing on its own

    • WoodScientist@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      17
      arrow-down
      2
      ·
      20 hours ago

      I know that anybody who has consistent access to an internet connection in North Korea is almost certainly working for the benefit of the great leader and they aren’t actually seeing any money or benefit for themselves.

      Eh, this doesn’t sound like the job you would give someone in a prison camp. You’re talking about people that you’re allowing to interact and work regularly with foreigners outside the country. That does not sound like the type of position you trust to a political prisoner. That sounds like a position you put someone of high trust. It’s probably a pretty cushy job as the standards of North Korea go. Sure beats scratching at dirt or working in some godawful arms factory. It’s probably the type of job you need some good family connections in the Party in order to get. Sure, the government takes all the direct monetary benefit of the work, but that is just kindof how Communist systems work. I imagine the people working those jobs have some of the highest standards of living available to people that aren’t senior party leadership.

    • NOT_RICK@lemmy.world
      link
      fedilink
      English
      arrow-up
      43
      arrow-down
      1
      ·
      1 day ago

      They’re also a security threat. Any opportunity to exfiltrate potentially profitable or leverageable data will be taken. I’d bet they’re used to sniff out vulnerabilities for ransomware attacks too. I definitley identify and agree with the healthy sympathy (I guess empathy if you’re in the states, our leader more than qualifies as an asswipe) for the citizens of North Korea

      • Socialism_Everyday@reddthat.com
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        2
        ·
        6 hours ago

        They’re also a security threat. Any opportunity to exfiltrate potentially profitable or leverageable data will be taken

        But thats good, the USA is carrying out genocide in Palestine and is about to invade Venezuela. And Amazon is no saint either.

        • NOT_RICK@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          6 hours ago

          The US is enabling and providing political cover for the Palestinian genocide, Israel is carrying it out. I don’t think an invasion of Venezuela is imminent, just the same kind of underhanded manipulation and isolation that has been done to Cuba for the past half century. Agreed Amazon sucks.

          None of that changes the fact that only thing that these North Korean tech workers do is help Kim fund his military projects and his Bourgeoisie lifestyle

          • Socialism_Everyday@reddthat.com
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            55 minutes ago

            The US is enabling and providing political cover for the Palestinian genocide

            …and economic support, and military support defending their coastlines and boats, and military support defending them from Iran, and most of the weapons used on Palestinians are of US origin.

            just the same kind of underhanded manipulation and isolation that has been done to Cuba for the past half century

            Then you’ll be probably horrified to learn that US+EU economic sanction have murdered half a million people per year since 1971 per the latest academic health research estimates. This is more death than the deaths from war since 1971 on average.

            that only thing that these North Korean American tech workers do is help Kim Bezos fund his military projects and his Bourgeoisie lifestyle

    • Diplomjodler@lemmy.world
      link
      fedilink
      English
      arrow-up
      22
      arrow-down
      1
      ·
      edit-2
      15 hours ago

      These people are definitely not there just to make some money. And whatever money they make will be used to prop up the genocidal regime.

      • Socialism_Everyday@reddthat.com
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        1
        ·
        6 hours ago

        Are you talking about the USA Amazon workers propping up the USA genocidal regime, as seen in Palestine? Because, AFAIK, there’s no genocide going on as a consequence of North Korea. Care to elaborate?

        • Diplomjodler@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          ·
          6 hours ago

          I’d say locking up a substantial part of your population, including their families in murderous gulags amounts to genocide. Oh, and did anybody say Arduous March?

          • Socialism_Everyday@reddthat.com
            link
            fedilink
            English
            arrow-up
            2
            arrow-down
            1
            ·
            4 hours ago

            I’d say locking up a substantial part of your population

            US has highest prison population in the world, 1 in 5 black men go through the prison system. Is that genocide?

            including their families

            This is fox news propaganda, similar level to “weapons of mass destruction in Iraq”

            gulags

            Gulags are just prisons. GULAG is the acronym of the penitentiary system of the USSR.

  • flamingo_pinyata@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    20
    ·
    1 day ago

    I guess this is inevitable at huge companies. Nobody cares about the actual person you’re hiring, it’s just another position to fill. Of course there will be fakes of all kinds.

    • TragicNotCute@lemmy.world
      link
      fedilink
      English
      arrow-up
      16
      ·
      1 day ago

      It’s not that, it’s that they are incredibly sophisticated in their techniques. I just had to sit through 90 minutes of training about how to spot fake applicants.

      • WoodScientist@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        8
        ·
        20 hours ago

        I don’t get why companies can’t solve this problem entirely by just flying out applicants for in-person interviews towards the end of the hiring process. Or hell, maybe only even ask the candidate to fly out for a visit after they’ve already accepted the job offer. Just one minimal and relatively cheap step to confirm the remote worker you’re hiring is who they claim to be. For the cost of a flight, a night or two in a hotel, and some meal vouchers, you can verify someone’s identity. Sure, maybe not for freelance work. But for any well paid technical field? This is a trivial expense.

        • oce 🐆@jlai.lu
          link
          fedilink
          English
          arrow-up
          7
          ·
          8 hours ago

          I feel this can be bypassed the same way remote interviews have been passed, you have a talented dude A actually trained to pass whatever verification is needed, and whenever there’s privacy, it switches to dude B, while dude A moves to another recruitment process. I think I have heard about this kind of dude A offering his services online for anyone ready to pay.
          Anyone else has never seen the face of one of their full remote colleague? I have one in my team, he does a good job though, however many they may be behind him.

        • TragicNotCute@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          7 hours ago

          It not practical at a remote first company to fly people out to where we happen to have offices when they could be working from anywhere.

          It’s cheap-ish for a flight, but at scale, the starts to become an expensive hiring pipeline.

        • Honytawk@feddit.nl
          link
          fedilink
          English
          arrow-up
          1
          ·
          15 hours ago

          I wonder how much it would cost to hire an actor for that. You know they would find ways around them.

        • TragicNotCute@lemmy.world
          link
          fedilink
          English
          arrow-up
          5
          ·
          7 hours ago

          It’s more a list of warnings signs.

          • blurred/virtual background (we make them turn it off during interviewing)
          • refusal to do gestures or follow specific instructions (wave your hand in front of your face)
          • not familiar with local knowledge like weather
          • appearing to read from the screen or phone

          There’s more than that, but those are the highlights.

      • jol@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        18
        arrow-down
        1
        ·
        1 day ago

        Right? I never heard of tracking employee’s keystroke latency before. Pretty genius.

        • stevestevesteve@lemmy.world
          link
          fedilink
          English
          arrow-up
          9
          ·
          edit-2
          1 day ago

          How do they even?? They can’t know the difference in time between the humans key input and the computer’s receipt of it, since they can’t possibly know the exact millisecond the human input was made…?

          The reported article really sounds like a misreading of a more technical document

          • jol@discuss.tchncs.de
            link
            fedilink
            English
            arrow-up
            11
            arrow-down
            1
            ·
            1 day ago

            If you’re on an ssh connection to a server, they can probably track the keystroke latency and average out over time. All network packets have timestamps, so you can know the latency of each one. If it’s consistently high, that’s unlikely to be a fluke or temporary network slowness.

            • atzanteol@sh.itjust.works
              link
              fedilink
              English
              arrow-up
              1
              ·
              edit-2
              17 hours ago

              Tcp/ip packets don’t have timestamps. They wouldn’t be reliable even if they did. And they certainly wouldn’t be “millisecond accurate”.

          • Brkdncr@lemmy.world
            link
            fedilink
            English
            arrow-up
            4
            ·
            1 day ago

            Vdi tracks round trip latency but 100ms isn’t that far.

            I bet they didn’t use keystroke latency but that’s what they said they used. They probably used drone reconnaissance.

            • JasonDJ@lemmy.zip
              link
              fedilink
              English
              arrow-up
              5
              arrow-down
              1
              ·
              23 hours ago

              Light in fiberoptic travels at about 0.66c, or about 124,000 mi/sec. Data on copper actually has an advantage here, travelling at 0.99c, but it’s not sustainable for long distance.

              100ms being 1/10th of a second would be 12,400 miles.

              The earth is about 24,000 miles at the equator.

              At most, 100ms one-diredtional would be literally halfway around the world.

              Of course, I have 60ms packet latency to my office 45 miles away as the crow flies. So maybe packet latency isn’t the best way to tell.

          • plantfanatic@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            3
            arrow-down
            1
            ·
            1 day ago

            Average response from entering a line and starting the next. There’s a delay while the information is sent, and before they start typing the next line.

          • Nurse_Robot@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            1 day ago

            Hopefully someone can share the original paywalled Bloomberg article, maybe it goes into more detail

        • tidderuuf@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          arrow-down
          2
          ·
          1 day ago

          It’s actually common for micromanaging to have software that tracks this. I believe Microsoft Teams has something similar managers can use to track “productivity”. Someone probably just compiled all of it and clicked sort, then saw some Asian name at the top and that’s what raised the red flag.