IBM Says Uncovered Sophisticated Bank Transfer Cyber-Scam

Advertisement
By Reuters | Updated: 3 April 2015 10:57 IST
IBM has uncovered a sophisticated fraud scheme run by a well- funded Eastern European gang of cybercriminals that uses a combination of phishing, malware and phone calls that the technology company says has netted more than $1 million from large and medium-sized US companies.

The scheme, which IBM security researchers have dubbed "The Dyre Wolf," is small in comparison with more recent widespread online fraud schemes but represents a new level of sophistication.

According to IBM, since last year the attackers have been targeting people working in companies by sending spam email with unsafe attachments to get a variant of the malware known as Dyre into as many computers as possible.

If installed, the malware waits until it recognizes that the user is navigating to a bank website and instantly creates a fake screen telling the user that the bank's site is having problems and to call a certain number.

Advertisement

If users call that number, they get through to an English-speaking operator who already knows what bank the users think they are contacting. The operator then elicits the users' banking details and immediately starts a large wire transfer to take money out of the relevant account.

Advertisement

The use of a live phone operator is what makes the scheme unique, said Caleb Barlow, vice president of IBM Security.

"What's very different in this case, is we saw a pivot of the attackers to use a set of social engineering techniques that I think are unprecedented," said Barlow. "The focus on wire transfers of large sums of money really got our attention."

Advertisement

IBM did not release any details on which companies fell prey to the scheme or the location of the perpetrators.

Once the transfer is complete, the money is then quickly moved from bank to bank to evade detection. In one instance, IBM said, the gang hit the victim company with a denial of service attack - essentially bringing down their Web capabilities - so it would not discover the theft until much later.

Advertisement

International Business Machines's security unit is recommending that companies make sure employees are trained in spotting phishing attacks - where emails or attachments can infect a computer - and to never provide banking credentials to anyone.

The unit published a blog on the issue on its site.

© Thomson Reuters 2015

 

For details of the latest launches and news from Samsung, Xiaomi, Realme, OnePlus, Oppo and other companies at the Mobile World Congress in Barcelona, visit our MWC 2025 hub.

Further reading: IBM, Internet, Cyber, Cybercrime, Cybercriminals
Advertisement

Related Stories

Popular Mobile Brands
  1. iPhone 17e vs iPhone 17: Price in India, Features, Specifications Compared
  2. Vivo X300 FE Launched as Global Version of This Chinese Smartphone
  3. MacBook Neo Launched in India With 13-Inch Display, A18 Pro Chip: See Price
  4. Tecno Pop X Launched in India With 5,000mAh Battery, IP64 Rating: See Price
  5. Apple Studio Display, Studio Display XDR With 27-Inch 5K Displays Launched in India
  6. Vivo V70 FE Colour Options, Key Features Revealed Ahead of March 9 Launch
  1. Hubble Constant Puzzle Deepens as Supernova and CMB Measurements Clash
  2. MacBook Neo Launched in India With 13-Inch Liquid Retina Display, Apple's A18 Pro Chip: Price, Specifications
  3. Samsung Galaxy A37, Galaxy A57 Spotted on Geekbench With Better Results Ahead of Anticipated Launch
  4. Vivo X300 FE Launched With Snapdragon 8 Gen 5, 50-Megapixel Telephoto Camera: Price, Features
  5. Vivo V70 FE Colour Options, Key Specifications Revealed Ahead of March 9 Launch
  6. Apple MacBook Neo Reportedly Listed on Regulatory Site Hours Before Anticipated Launch
  7. Tecno Pop X Launched in India With 5,000mAh Battery, IP64 Rating: Price, Specifications
  8. Tecno Megapad 2, Tecno Watch GT 1S and Tecno FreeHear 2 Unveiled at MWC 2026: Availability, Features
  9. Mike & Nick & Nick & Alice OTT Release Date: Know When and Where to Watch it Online
  10. MediaTek Showcases AI Glasses at MWC 2026; Demonstrates Emergency Satellite Alerts With Starlink
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.