Ripple Shares DPRK Threat Data on Fraud Domains, Wallets, Campaigns
Tech Ripple Shares DPRK Threat Data on Fraud Domains, Wallets, CampaignsRipple will provide ISAC members intelligence on DPRK-linked fraud domains, wallets, and campaigns.Security teams can use enriched identity signals to assess applicants, contractors, and vendors.ISACs API will distribute shared data with context, confidence levels, and linked indicators. Ripple Threat Intelligence Expands Defense Ripple shared on May 4, 2026, that it will provide North Korea-linked threat intelligence to the Information Sharing and Analysis Center ( ISAC). The move puts hiring, vendor screening, and identity-based risk at the center of defense as attackers increasingly seek access through people, not only software flaws. The program gives ISAC members access to Ripple‘s high-confidence intelligence on the Democratic People’s Republic of Korea (DPRK)-linked activity. The shared data covers fraud-related domains, wallets, and indicators of compromise tied to active campaigns. Its value comes from added context, including identity details and signals that connect suspected actors to wider operations. That can help security teams assess applicants, contractors, and outside partners before access is granted. Ripple stated on X: “The strongest security posture in is a shared one. A threat actor who fails a background check at one company will apply to three more that same week. Without shared intelligence, every company starts