Warning for banks after Bangladesh hack

Following the unprecedented cyber heist of Bangladesh's central bank, a global messaging service is warning institutions to review their security.

The SWIFT messaging system will ask banks to make sure they follow recommended security practices following a cyber attack on Bangladesh's central bank that yielded $US81 million ($A106.48 million).

The Brussels-based Society for Worldwide Interbank Financial Telecommunications (SWIFT), a co-operative owned by about 3000 global financial institutions, will issue a written warning on Monday asking banks to review internal security, a spokeswoman told Reuters.

SWIFT staff will also begin calling banks to highlight the importance of reviewing security measures after the attack in Bangladesh.

"Our priority at this time is to encourage customers to review and, where necessary, to reinforce their local operating environments," the spokeswoman said.

Unknown hackers breached the computer systems of Bangladesh Bank and in early February attempted to steal $US951 million from its account at the Federal Reserve Bank of New York, which it uses for international settlements.

Some attempted transfers were blocked, but $US81 million was transferred to accounts in the Philippines in one of the largest cyber heists in history.

SWIFT has so far said little about the attack, except it was related to "an internal operational issue" at Bangladesh Bank and there was no compromise in its core messaging system.

SWIFT prepared a summary of previously issued recommendations for implementing security measures to thwart hackers, which advises members to pay close attention to best practices, the spokeswoman said.

A confidential interim report on the investigation, which forensics experts submitted to the bank on Wednesday, says attackers took control of the bank's network, stole credentials for sending SWIFT messages and used "sophisticated" malicious software to attack the computers it uses to process and authorise transactions.

Investigators say in the report they believe the attackers have targeted other financial institutions.

The report was prepared by FireEye Inc and World Informatix, which were hired by Bangladesh's central bank to investigate the massive theft.

The investigators do not identify other victims or name the hackers, but say forensic evidence suggests they are also behind other recent cyber attacks on financial institutions.


Share

2 min read

Published

Source: AAP



Share this with family and friends


Get SBS News daily and direct to your Inbox

Sign up now for the latest news from Australia and around the world direct to your inbox.

By subscribing, you agree to SBS’s terms of service and privacy policy including receiving email updates from SBS.

Download our apps
SBS News
SBS Audio
SBS On Demand

Listen to our podcasts
An overview of the day's top stories from SBS News
Interviews and feature reports from SBS News
Your daily ten minute finance and business news wrap with SBS Finance Editor Ricardo Gonçalves.
A daily five minute news wrap for English learners and people with disability
Get the latest with our News podcasts on your favourite podcast apps.

Watch on SBS
SBS World News

SBS World News

Take a global view with Australia's most comprehensive world news service
Watch the latest news videos from Australia and across the world