Bank hackers linked to wider campaign: researchers

May 27, 2016

The hackers behind the $81 million heist from the Bangladesh central bank have likely been involved in a series of attacks on the financial system, a US security firm has concluded.

Researchers at the security firm Symantec also found that the malware used in the bank hacks shares code with that used in the massive 2014 cyberattack against Sony Pictures.

Symantec said a bank in the Philippines has been attacked by the group that hit the Bangladesh central bank and attempted a heist from the Tien Phong Bank in Vietnam.

"Malware used by the group was also deployed in targeted attacks against a bank in the Philippines. In addition to this, some of the tools used share code similarities with malware used in historic attacks linked to a threat group known as Lazarus," Symantec researchers said in a blog post Thursday.

"The attacks can be traced back as far as October 2015, two months prior to the discovery of the failed attack in Vietnam, which was hitherto the earliest known incident."

News of the Bangladesh incident sparked a warning from the global financial interbank platform SWIFT, which earlier this month warned of a wide-ranging campaign.

SWIFT said this month that hackers exploited vulnerabilities at two unnamed banks to gain access to their fund transfer systems, which then give instructions to the SWIFT network.

Symantec said the found has been tied to the group known as Lazarus, blamed for the Sony attack which according to US officials had been ordered by North Korea.

"The discovery of more attacks provides further evidence that the group involved is conducting a wide campaign against financial targets in the region," Symantec said.

"While awareness of the threat posed by the group has now been raised, its initial success may prompt other attack groups to launch similar attacks. Banks and other financial institutions should remain vigilant."

Explore further: New cyberattack made on bank, financial supervisor warns

Related Stories

New cyberattack made on bank, financial supervisor warns

May 13, 2016

A new cyberattack has been made against an unnamed bank, part of a coordinated campaign that follows February's theft of $101 million from the Bangladesh central bank, the international money transfer supervisor Swift said ...

6 Sri Lankans banned from leaving after Bangladesh bank hack

March 23, 2016

A Sri Lankan court banned foreign travel by six directors of a foundation that police say was remitted some of the $101 million stolen in the hacking of Bangladesh Central Bank's account at the Federal Reserve Bank in New ...

Bangladesh says 20 foreigners involved in theft from NY Fed

April 18, 2016

Bangladesh investigators have determined that at least 20 foreigners were involved in the cybertheft of $101 million from the Bangladesh central bank's account in the Federal Reserve Bank of New York, a senior investigator ...

Recommended for you

What can snakes teach us about engineering friction?

May 21, 2018

If you want to know how to make a sneaker with better traction, just ask a snake. That's the theory driving the research of Hisham Abdel-Aal, Ph.D., an associate teaching professor from Drexel University's College of Engineering ...

Flexible, highly efficient multimodal energy harvesting

May 21, 2018

A 10-fold increase in the ability to harvest mechanical and thermal energy over standard piezoelectric composites may be possible using a piezoelectric ceramic foam supported by a flexible polymer support, according to Penn ...

Self-assembling 3-D battery would charge in seconds

May 17, 2018

The world is a big place, but it's gotten smaller with the advent of technologies that put people from across the globe in the palm of one's hand. And as the world has shrunk, it has also demanded that things happen ever ...

0 comments

Please sign in to add a comment. Registration is free, and takes less than a minute. Read more

Click here to reset your password.
Sign in to get notified via email when new comments are made.