SWIFT reports new 'sophisticated' bank hacker attack

Image
AFP Brussels
Last Updated : May 13 2016 | 6:07 PM IST
SWIFT, the global financial system used to move hundreds of billions of dollars a day, today said highly sophisticated hackers had gained access to a bank aiming to hijack fund transfers made via the network.
SWIFT -- the Society for Worldwide Interbank Financial Telecommunication -- insisted its own system had not been compromised, but warned that this latest attack was clearly part of a wide-ranging campaign.
It comes months after a multi-milion dollar heist at the Bangladesh central bank.
"Forensic experts believe this new discovery evidences that the malware used in the earlier reported customer incident was not a single occurrence but part of a wider and highly adaptive campaign targeting banks," the Brussels-based group said in a letter to clients.
In both cases, the hackers "exploited vulnerabilities" at the two unnamed banks to gain access to their fund transfer systems, which then give instructions to the SWIFT network, it said.
"The attackers clearly exhibit a deep and sophisticated knowledge of specific operational controls within the targeted banks -- knowledge that may have been gained from malicious insiders or cyber attacks, or a combination of both," SWIFT said.
In light of the latest attack, SWIFT called on its customers "as a matter of urgency" to review all their internal controls.
"This includes everything from employee checks to password protection to cyber defences," it said, stressing again that the SWIFT network had not been compromised.
In February, hackers got hold of USD 81 million from Bangladesh's account at the Federal Reserve Bank of New York by making it move the funds to accounts in the Philippines.
Investigators are still trying to work out how the hackers got into the system in that instance amid growing concerns about bank security and what the diverted funds might be used for.
Many attacks are put down to individuals or companies but state or state-sponsored intruders are believed to be increasingly active, seeking key political and economic information or going further, to disrupt and harm rivals.
Analysts Sergei Schenvchenko and Adrian Nish writing in a blog for BAE Systems said they believed the same hacker was behind both cases, citing an incident at a bank in Vietnam.
*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: May 13 2016 | 6:07 PM IST

Next Story