Bangladesh Heist Linked to Attack on Sony: BAE Researchers

Advertisement
By Reuters | Updated: 13 May 2016 17:31 IST
Malicious software used in February's $81 million heist at Bangladesh Bank is linked to other cyber-attacks, including the high-profile 2014 attack on Sony's Hollywood studio, according to a new report from cyber-security firm BAE Systems.

"What initially looked to be an isolated incident at one Asian bank turned out to be part of a wider campaign," BAE's cyber-security team said in the report it plans to release on Friday.

Reuters was not able to independently verify the report from BAE, which last month released the first public analysis of malware used in the attack on Bangladesh Bank. BAE, which is not one of the security firms that Bangladesh Bank hired to help with forensics, said it found the malware on its own by combing through repositories that collect samples of malicious files.

Similar malware recently was used to target a Vietnamese commercial bank with fraudulent messages from the Swift money transfer system, which also was used in the Bangladesh hack, BAE said. The distinctive computer code used to erase the tracks of hackers in the bank attacks was similar to code used to attack Sony.

Advertisement

Sony Pictures Entertainment's network was virtually shut down in late 2014 with destructive malware. The attack was followed by online leaks of unreleased movies and emails that caused embarrassment to executives and Hollywood personalities.

Advertisement

BAE did not name the Vietnamese bank, but Swift, the Brussels-based global financial messaging network, disclosed on Thursday that malware had been discovered targeting a new commercial bank. Neither firm said whether funds had been stolen.

The BAE report, which the firm plans to publish on its website, likely will be closely scrutinized because the White House has blamed North Korea for the Sony attack, a charge Pyongyang has rejected.

Advertisement

BAE's head of threat intelligence, Adrian Nish, told Reuters that the company had not determined who was behind the attacks.

The report said the malware used against Bangladesh Bank exhibits "the same unique characteristics" as software used in "Operation Blockbuster," a campaign documented by a coalition of security firms that dates back to at least 2009 and that includes the 2014 Sony breach.

Advertisement

Technical similarities include encryption keys and names of programming elements known as mutual exclusion objects, BAE said in the report.

"They have a very unique approach," Nish said. "The links come through the code, which bears the hallmarks of a single, consistent coder."

BAE said it identified the links between the recent bank hacks and Operation Blockbuster after analyzing tens of millions of malicious file samples.

The report acknowledged that there could be alternate explanations for the similarities.

It is possible that multiple programmers shared the same code, or even that it was painstakingly recreated to confuse investigators, according to BAE.

"Whilst there are possibilities that exist which may lead to alternative hypotheses, these are unlikely," the report said.

© Thomson Reuters 2016

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Realme 15T With 50-Megapixel Selfie Camera Debuts in India: See Price
  2. Oppo Enco Buds 3 Pro Available for Purchase in India: See Price, Offers
  3. Realme Watch 5 Design, Key Features Leaked Ahead of Debut
  4. Apple Hebbal: First-Ever Apple Store in Bengaluru is Now Open
  5. Amazon Great Indian Festival Sale: Deals on Smartphones, Laptops Teased
  6. YouTube Reportedly Cracks Down on Premium Family Plan Sharing
  7. Vivo Launches Y500 in China With a Massive 8,200mAh Battery
  8. Su From So OTT Release Date is Here! Know all the Details
  9. Razer Pro Click V2 and V2 Vertical Review
  10. Redmi 15 5G, Note 14 Pro Prices Dropped During Diwali With Xiaomi Sale
  1. BCCI Says Crypto, Real Money Gaming Platforms Can’t Bid for Team India’s Title Sponsorship
  2. Scientists Discover Hidden Mantle Layer Beneath the Himalayas Challenging Century-Old Theory
  3. Astronomers Propose Rectangular Telescope to Hunt Earth-Like Planets
  4. Microsoft Testing Native Clipboard Sync Feature to Share Text Between Windows PCs, Android Devices
  5. Su From So OTT Release: When and Where to Watch This Kannada-Language Horror-Comedy Online
  6. Sennheiser Momentum 4 Wireless 80th Anniversary Edition Launched in India With Up to 60 Hour Battery Life
  7. Call of Duty Film Adaption Said to Be a 'Priority' at Paramount, Negotiations on to Acquire Rights
  8. Cannibal Solar Storm May Trigger Auroras as Powerful Geomagnetic Storm to Hit Earth Soon
  9. Apple's iPhone 8 Plus Listed as Vintage Product Ahead of iPhone 17 Launch, 11-Inch MacBook Air Now Obsolete
  10. Hidden Reason Behind Portugal’s Deadly Earthquakes Finally Explained
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.