Bangladesh Heist Linked to Attack on Sony: BAE Researchers

Advertisement
By Reuters | Updated: 13 May 2016 17:31 IST
Malicious software used in February's $81 million heist at Bangladesh Bank is linked to other cyber-attacks, including the high-profile 2014 attack on Sony's Hollywood studio, according to a new report from cyber-security firm BAE Systems.

"What initially looked to be an isolated incident at one Asian bank turned out to be part of a wider campaign," BAE's cyber-security team said in the report it plans to release on Friday.

Reuters was not able to independently verify the report from BAE, which last month released the first public analysis of malware used in the attack on Bangladesh Bank. BAE, which is not one of the security firms that Bangladesh Bank hired to help with forensics, said it found the malware on its own by combing through repositories that collect samples of malicious files.

Similar malware recently was used to target a Vietnamese commercial bank with fraudulent messages from the Swift money transfer system, which also was used in the Bangladesh hack, BAE said. The distinctive computer code used to erase the tracks of hackers in the bank attacks was similar to code used to attack Sony.

Advertisement

Sony Pictures Entertainment's network was virtually shut down in late 2014 with destructive malware. The attack was followed by online leaks of unreleased movies and emails that caused embarrassment to executives and Hollywood personalities.

Advertisement

BAE did not name the Vietnamese bank, but Swift, the Brussels-based global financial messaging network, disclosed on Thursday that malware had been discovered targeting a new commercial bank. Neither firm said whether funds had been stolen.

The BAE report, which the firm plans to publish on its website, likely will be closely scrutinized because the White House has blamed North Korea for the Sony attack, a charge Pyongyang has rejected.

Advertisement

BAE's head of threat intelligence, Adrian Nish, told Reuters that the company had not determined who was behind the attacks.

The report said the malware used against Bangladesh Bank exhibits "the same unique characteristics" as software used in "Operation Blockbuster," a campaign documented by a coalition of security firms that dates back to at least 2009 and that includes the 2014 Sony breach.

Advertisement

Technical similarities include encryption keys and names of programming elements known as mutual exclusion objects, BAE said in the report.

"They have a very unique approach," Nish said. "The links come through the code, which bears the hallmarks of a single, consistent coder."

BAE said it identified the links between the recent bank hacks and Operation Blockbuster after analyzing tens of millions of malicious file samples.

The report acknowledged that there could be alternate explanations for the similarities.

It is possible that multiple programmers shared the same code, or even that it was painstakingly recreated to confuse investigators, according to BAE.

"Whilst there are possibilities that exist which may lead to alternative hypotheses, these are unlikely," the report said.

© Thomson Reuters 2016

 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Oppo Reno 15 Pro Max, Reno 15 Pro Launched Globally Alongside Reno 15
  2. Beauty (2025) OTT Release Date: When and Where to Watch it Online?
  3. Vivo V70 Visits IMDA Database; Could Launch Soon With These Features
  4. New Year 2026: 5 Best AI Prompts for ChatGPT, Gemini and More
  5. Samsung Galaxy S26 Series Roundup: Everything That We Know So Far
  6. Apple Could Emerge as a Major AI Powerhouse in 2026: Report
  7. These Three Xiaomi 17 Series Phones Could Launch in India in Q1 2026
  1. Prayagraj Ki Love Story Set to Stream Soon on Hungama OTT
  2. Mask OTT Release Date: When and Where to Watch This Action-Packed Thriller Online?
  3. New Year 2026 Custom Greetings: 5 Best AI Prompts for ChatGPT, Gemini, and Other AI Tools
  4. NASA’s Chandra Spots Champagne Cluster Formed by a Massive Galaxy Collision
  5. NASA’s Curiosity Rover Sends Stunning Sunrise-and-Sunset Holiday Postcard from Mars
  6. Oppo Find X9s Key Specifications Leaked Again; Might Also Launch in India
  7. Redmi Turbo 5, Redmi Turbo 5 Pro to Be Equipped With Upcoming MediaTek Dimensity Chips, Tipster Claims
  8. Vivo V70 Presence on IMDA Certification Database Points to Imminent Release
  9. MediaTek Dimensity 7100 Chipset Launched For Mid-Ranged Phones, Brings Efficiency Gains
  10. JWST Reveals Powerful Winds and Dense Atmosphere on Scorching Exoplanet TOI-561b
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.