
Genians Security found Kimsuky using local AI models and AI-generated documents in phishing campaigns targeting crypto investors, automating malware and data analysis.
North Korea-linked hacking group Kimsuky is building an arsenal of artificial intelligence tools that could automate phishing, analyze stolen data and sharpen malware development, researchers at Genians Security Center said in a report published Monday.
Months of tracking infrastructure linked to the group uncovered evidence of local large language models, AI development frameworks, speech recognition tools and documents created with generative AI. Genians assesses Kimsuky as operating under North Korea's Reconnaissance General Bureau.
The findings go beyond isolated queries to a chatbot. Researchers found traces of Ollama and GPT4All, two local AI platforms, installed in infrastructure tied to the threat actor. Another platform, Msty, was also present. Local models run directly on a computer or server instead of sending conversations to an outside provider, giving operators greater privacy.
Genians also found that GPT4All's LocalDocs feature had been configured. The feature uses retrieval-augmented generation, or RAG, which lets an AI system search a collection of documents before answering questions. For hackers, that capability could eventually make large piles of stolen documents easier to search and analyze, researchers warned.
The group appears to be exploring automation. Investigators found AI development packages including Microsoft Semantic Kernel and LLaMaSharp, alongside components for connecting programs with OpenAI and Azure OpenAI services. Researchers said the combination points toward development of specialized AI-powered tools rather than casual experimentation.
Some of that experimentation may already be influencing attacks. Since 2026, researchers have observed Kimsuky using documents assessed to have been created with generative AI as decoys in spear phishing campaigns targeting subjects including virtual assets and financial investment.
Polished AI-generated documents can strip away warning signs users once relied on to recognize phishing. Awkward translations, spelling mistakes and sloppy formatting become less useful clues when generative AI can quickly produce professional-looking business materials.
The underlying attack remains familiar. Victims receive ZIP archives containing malicious Windows shortcut, or LNK, files disguised as legitimate documents. Opening one can trigger hidden PowerShell commands while displaying a real-looking PDF, leaving the victim unaware that malicious activity is running in the background.
Kimsuky has also abused Git repositories as command-and-control infrastructure. Genians found malicious AsyncRAT payloads encrypted and disguised as image files with names such as "apple.png," "fox.png" and "wolf.png." AsyncRAT is remote-access malware that can give an attacker control over a compromised machine.
Investigators uncovered evidence connecting the activity to North Korean operators. Logs contained the system manufacturer name "Arirang," a brand associated with North Korean tablets and smartphones, along with Korean-language materials and linguistic patterns researchers identified as characteristic of North Korean usage.
In another case, logs showed a Korean-language question about disabling Microsoft Defender's reporting feature being translated into English through Google Translate and then submitted to ChatGPT. Researchers also found searches related to virtual assets, including a query asking where users of Bitcoin could be found.
The report stops short of saying Kimsuky has built its own AI models. Researchers found no large training datasets or evidence of independently trained models. Instead, they describe a group still learning how to integrate existing AI systems into malware development and data analysis.
That distinction may not remain reassuring for long. Genians warned that combining RAG with stolen documents, speech-to-text tools with intercepted recordings and AI agents with Kimsuky's existing malware development environment could reduce the human work required after a breach. For defenders, the next battle may increasingly center on detecting what malware does rather than judging whether the email that delivered it looks suspicious.
Drafted by a large language model from the source reporting linked above, then screened by automated publishing checks. It is not read by a journalist before publication. Some articles cite our Alpha Score. Verify prices and figures against the original source. Educational coverage, not personalized advice.