Get 40% Off
⚠ Earnings Alert! Which stocks are poised to surge?
See the stocks on our ProPicks radar. These strategies gained 19.7% year-to-date.
Unlock full list

North Korea Hackers Tried to Take $1.1 Billion in Bank Attacks

Published 09/10/2018, 00:35
Updated 09/10/2018, 05:02
© Bloomberg. Cables feed into a serial digital interface (SDI) card inside a communications room at an office in London, U.K., on Monday, May 21, 2018. The Department of Culture, Media and Sport will work with the Home Office to publish a white paper later this year setting out legislation, according to a statement, which will also seek to force tech giants to reveal how they target abusive and illegal online material posted by users.

(Bloomberg) -- A North Korean hacking group has tried to steal at least $1.1 billion in a series of attacks on global banks over the past four years, according to cybersecurity firm FireEye Inc.

The hackers, which FireEye identified as APT38, have infiltrated more than 16 organizations in 11 countries including the U.S., and stolen more than $100 million. The group has hacked heavily defended servers at banks and spent time scouring their networks. Security officials should be alarmed, FireEye said last week in a report.

“They understand banking networks pretty well,” Charles Carmakal, vice president of consulting at FireEye, said in an interview. “And they probably have geopolitical considerations behind the timing, location of their attacks.”

The most prominent attack by APT38 was the theft of funds from the Bangladeshi central bank’s accounts at the U.S. Federal Reserve in 2016. In that case, the hackers got the Fed to transfer some $100 million by sending fake wiring orders. About $40 million was recovered when the hack was discovered and transfers reversed before they could be withdrawn.

In January, Mexico’s state-owned trade bank thwarted the attempted theft of $110 million using similar methods. In May, a Chilean bank lost $10 million. Both attacks were carried out by APT38, FireEye said in the report.

North Korean diplomats and official media have denied that the country plays any role in cyberattacks.

In recent attacks, the hacking group “burns the house down,” wiping out computer hard drives to erase its tracks, Carmakal said. While the attacks continue, APT38 hasn’t targeted American banks amid North Korea’s peace talks with the U.S., he said.

Banks and other financial institutions are targeted by the most sophisticated cyber criminals, who are attracted to the lure of big-money paydays, FireEye and other groups have said. That has prompted banks to outspend other industries to protect themselves, with the biggest U.S. firms’ annual cybersecurity budgets reaching $1 billion.

Financial firms face the highest number of attempted breaches from computer addresses that have already been blocked because of misbehavior, according to a report set for release Tuesday by cybersecurity firm eSentire. That points to targeted campaigns and persistent efforts by sophisticated attackers, according to Eldon Sprickerhoff, founder and chief innovation officer of eSentire.

© Bloomberg. Cables feed into a serial digital interface (SDI) card inside a communications room at an office in London, U.K., on Monday, May 21, 2018. The Department of Culture, Media and Sport will work with the Home Office to publish a white paper later this year setting out legislation, according to a statement, which will also seek to force tech giants to reveal how they target abusive and illegal online material posted by users.

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.