MACAU DAILY TIMES 澳門每日時報

Top Menu

  • Our Team
  • Editorial Statute
    • Code of Ethics
    • Privacy Policy
    • Terms and Conditions
  • Archive
    • PDF Editions
  • Contacts
  • Extra Times
    • Drive In
    • Book It
    • tTunes
    • Features
    • World of Bacchus
    • Taste of Edesia

Main Menu

  • Home
  • Macau
    • Photo Shop
    • Advertorial
  • Interview
  • Greater Bay
  • Business
    • Corporate Bits
  • China
  • Asia
  • World
  • Sports
  • Opinion
    • Editorial
    • Our Desk
    • Business Views
    • China Daily
    • Multipolar World
    • The Conversation
    • World Views
  • Our Team
  • Editorial Statute
    • Code of Ethics
    • Privacy Policy
    • Terms and Conditions
  • Archive
    • PDF Editions
  • Contacts
  • Extra Times
    • Drive In
    • Book It
    • tTunes
    • Features
    • World of Bacchus
    • Taste of Edesia
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
logo
ktz_banner_mdt150921
FOUNDER & PUBLISHER Kowie Geldenhuys
EDITOR-IN-CHIEF Paulo Coutinho
Macau,

MACAU DAILY TIMES 澳門每日時報

  • Home
  • Macau
    • Photo Shop
    • Advertorial
  • Interview
  • Greater Bay
  • Business
    • Corporate Bits
  • China
  • Asia
  • World
  • Sports
  • Opinion
    • Editorial
    • Our Desk
    • Business Views
    • China Daily
    • Multipolar World
    • The Conversation
    • World Views
  • Pet-friendly dining grows to 90 restaurants, but hygiene debate rages on

  • Son arrested for allegedly inciting father’s suicide attempt

  • Spice Without Borders: When Sichuan Mala Meets Indian Masala in Hong Kong

  • LRT passenger figures drop by almost 20% month-on-month in June

  • Astronomer calls for global ‘space tax’ as orbital congestion risks rise

  • ‘Pop Out Green Restroom’ selected for architecture guide on sustainable design innovation

Asia-Pacific
Home›Asia-Pacific›Hackers stalked Bangladesh bank for two weeks before big heist

Hackers stalked Bangladesh bank for two weeks before big heist

By -
March 21, 2016
26
0
Share:

hackers-bangladesh-bank

Hackers who stole USD101 million from Bangladesh’s central bank stalked its computer systems for almost two weeks beforehand, according to an interim investigation report seen by Bloomberg.
Prepared for Bangladesh Bank by cyber security firms FireEye Inc. and World Informatix, the assessment offers a tantalizing glimpse into how cyber criminals can use banks’ own systems against them. The cyber companies say the thieves deployed malware on servers housed at the central bank to make payments seem genuine.
The report cast the unidentified hackers as a sophisticated group who sought to cover their tracks by deleting computer logs as they went. Before making transfers they sneaked through the network, inserting software that would allow re-entry.
It’s the sort of thorough operation often mounted by nation-state hackers, according to the report, but FireEye’s intelligence unit believes the group, which it has been tracking for some time, is criminal. “These threat actors appear to be financially motivated, and well organized,” the report said.
The heist, which saw payments processed through the bank’s accounts at the U.S. Federal Reserve and money moved to the Philippines and Sri Lanka, was part of a bigger attempt to steal nearly $1 billion in total from the central bank. It exposed weaknesses in systems, sparked a dispute between Bangladesh’s central bank and its finance ministry and cost the central bank governor, Atiur Rahman, his job less than five months before he planned to retire.
The hackers sent $81 million from Bangladesh Bank’s account in New York to the Philippines, and another $20 million to Sri Lanka. The Federal Reserve Bank of New York blocked transactions worth another $850 million. A bank in Sri Lanka stopped and returned the cash, while the money in the Philippines is still missing, leading to a Senate probe that is riveting the nation.
“Malware was specifically designed for a targeted attack on Bangladesh Bank to operate on SWIFT Alliance Access servers,” the interim report said. Those servers are operated by the bank but run the SWIFT interface, and the report makes it clear the breach stretches into other parts of the bank’s network as well. “The security breach of the SWIFT environment is part of a much larger breach that is currently under investigation.”
SWIFT is a member-owned cooperative that provides international codes to facilitate payments between banks globally. It can’t comment on the investigation, according to Charlie Booth from Brunswick Group, a corporate advisory firm that represents SWIFT.
“We reiterate that the SWIFT network itself was not breached,” Booth said in an e-mail. “There is a full investigation underway, on what appears to be a specific and targeted attack on the victim’s local systems.” SWIFT said last week its “core messaging services were not impacted by the issue and continued to work as normal.”
Dedicated servers running the SWIFT system are located in the back office of the Accounts and Budgeting Department of Bangladesh Bank. They are connected with three terminals for payment communications.
Patrick Neighorn, a spokesman for FireEye, declined to comment on the report or the investigation. An e-mail to Rakesh Asthana, managing director of World Informatix, wasn’t immediately returned. A call to the company’s office wasn’t answered. Subhankar Saha, spokesman for Bangladesh Bank, said he’s not aware of the report.
The assessment found the first suspicious log-in came on Jan. 24 and lasted less than a minute. On Jan. 29, attackers installed “SysMon in SWIFTLIVE” in what was interpreted as reconnaissance activity, and appeared to operate exclusively with “local administrator accounts.”
Operator logs showed the hackers logged in for short periods of time until Feb. 6, according to the report. The four transfers that went to the Philippines occurred on Feb. 4. The report said the hackers have already hit other FireEye clients, though it’s unclear if those include other central banks.
As of March 16, the FireEye team was about half-way through the examination of the central bank’s computer network.
“Complex malwares have been identified with advanced features of command & control communication, harvesting of credentials and to securely erase all traces of activity after accomplishing its task,” the report said. It identified 32 “compromised assets” that “were used for reconnaissance and to gain control of the SWIFT servers and related assets.” Bloomberg

FacebookTweetPin

Share this:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X

Like this:

Like Loading…

Related

Previous Article

The Philippines | Airliner with 254 aboard ...

Next Article

Beijing journalist linked to petition on president ...

0
Shares

    Related articles More from author

    • Asia-Pacific

      Philippines | Killings of drug suspects rise to 525

      August 12, 2016
      By -
    • Asia-Pacific

      Used to impunity, Bangladesh elite face corruption crackdown

      November 6, 2019
      By -
    • Asia-Pacific

      Tensions rise after a bishop and priest are wounded in a knife attack in a church

      April 17, 2024
      By -
    • Asia-PacificHeadlines

      High rollers turned small Saipan casino more profitable than some Macau peers

      August 25, 2016
      By -
    • Asia-Pacific

      Philippines | At least 20 rebels killed in southern province: military

      January 7, 2015
      By -
    • Asia-Pacific

      Australia | PM scraps visa for skilled foreign workers

      April 19, 2017
      By -

    Leave a reply Cancel reply

    You must be logged in to post a comment.

    • Macau

      IACM to roll out one-off wholesaling

    • AdvertorialMacau

      Get the Jab incentive program raises employee vaccination rate to over 70% | Melco supports SAR government efforts towards community-wide vaccination

    • China

      Chinese officials contest Dalai Lama’s Milan visit

    DAILY EDITION

    Friday, July 3, 2026 – edition no. 4984
    Friday, July 3, 2026 – edition no. 4984

    Greater Bay

    MDT MACAU GRAND PRIX SPECIAL

    July 2026
    M T W T F S S
     12345
    6789101112
    13141516171819
    20212223242526
    2728293031  
    « Jun    

    Timeline

    • July 3, 2026

      Pet-friendly dining grows to 90 restaurants, but hygiene debate rages on

    • July 3, 2026

      Son arrested for allegedly inciting father’s suicide attempt

    • July 3, 2026

      Spice Without Borders: When Sichuan Mala Meets Indian Masala in Hong Kong

    • July 3, 2026

      LRT passenger figures drop by almost 20% month-on-month in June

    • July 3, 2026

      Astronomer calls for global ‘space tax’ as orbital congestion risks rise

    • July 3, 2026

      ‘Pop Out Green Restroom’ selected for architecture guide on sustainable design innovation

    • July 3, 2026

      Your most valuable skill might be knowing what to ignore

    • July 3, 2026

      Community leaders back long-term healthy weight plan ahead of SSM competition

    • July 3, 2026

      Typhoon Signal No. 1 remains in force, Signal 3 upgrade possible today

    • July 3, 2026

      FAOM advocates for training and certification to develop local workforce

    Extra Times

    Extra TimesHeadlinesTaste of Edesia

    Spice Without Borders: When Sichuan Mala Meets Indian Masala in Hong Kong

    This July, two of Hong Kong’s most visually arresting dining rooms will set the stage for a culinary dialogue that has been centuries in the making. Grand Majestic Sichuan and ...
    • Summer Energy Ignites 

      By -
      July 3, 2026
    • Silk Road Art Feast: Enchanting Dunhuang Comes to Life Through Culinary Artistry

      By Irene Sam, MDT
      June 26, 2026
    • Myles Smith makes anthemic, personal pop on his debut, ‘My Mess, My Heart, My Life’ 

      By MDT/AP
      June 26, 2026
    • The Alibi Mixers Series: A Summer of Art, Music, and Craft Brews

      By -
      June 26, 2026
    • Recent

    • Popular

    • Pet-friendly dining grows to 90 restaurants, but hygiene debate rages on

      By Yuki Lei, MDT
      July 3, 2026
    • Son arrested for allegedly inciting father’s suicide attempt

      By Yuki Lei, MDT
      July 3, 2026
    • Spice Without Borders: When Sichuan Mala Meets Indian Masala in Hong Kong

      By Irene Sam, MDT
      July 3, 2026
    • LRT passenger figures drop by almost 20% month-on-month in June

      By Renato Marques, MDT
      July 3, 2026
    • Astronomer calls for global ‘space tax’ as orbital congestion risks rise

      By Nadia Shaw, MDT
      July 3, 2026
    • ‘Pop Out Green Restroom’ selected for architecture guide on sustainable design innovation

      By Renato Marques, MDT
      July 3, 2026
    • Your most valuable skill might be knowing what to ignore

      By -
      July 3, 2026
    • Canidrome may have its days numbered, decision in ‘one or two months’

      By Paulo Coutinho, MDT
      May 26, 2016
    • Animal Welfare | Macau: Anima slams Canidrome management for avoiding debate

      By -
      May 4, 2016
    • Editorial | Canidoomed

      By Paulo Coutinho, MDT
      June 1, 2016
    • Animal Welfare | Canidrome presented with ultimatum: close or move

      By Daniel Beitler, MDT
      July 22, 2016
    • Australia regulator cracks down on alleged exportation of dogs to Macau

      By Paulo Coutinho, MDT
      June 10, 2016
    • USE OF ENGLISH IN MACAU | A ‘de facto’ official language

      By Catarina Pinto
      July 6, 2015
    • Animal rights | Canidrome: Anima in fresh airline negotiations as Canidrome closure looks more likely

      By Daniel Beitler, MDT
      May 27, 2016
    • Contact our Administrator
    • Contact our Editor-in-Chief
    • Contacts
    • Our Team
    • Privacy Policy
    • Terms and Conditions
    • Editorial Statute
    • Code of Ethics
    COPYRIGHT © MACAU DAILY TIMES 2008-2026. ALL RIGHTS RESERVED
    MACAU DAILY TIMES
    • Home
    • Macau
      • Photo Shop
      • Advertorial
    • Interview
    • Greater Bay
    • Business
      • Corporate Bits
    • China
    • Asia
    • World
    • Sports
    • Opinion
      • Editorial
      • Our Desk
      • Business Views
      • China Daily
      • Multipolar World
      • The Conversation
      • World Views
    • Our Team
    • Editorial Statute
      • Code of Ethics
      • Privacy Policy
      • Terms and Conditions
    • Archive
      • PDF Editions
    • Contacts
    • Extra Times
      • Drive In
      • Book It
      • tTunes
      • Features
      • World of Bacchus
      • Taste of Edesia

    Loading Comments...

    You must be logged in to post a comment.

      %d