The latest Investing Matters Podcast episode with London Stock Exchange Group's Chris Mayo has just been released. Listen here

Less Ads, More Data, More Tools Register for FREE

Pin to quick picks-1x Boeing Share News (BAES)

Share Price Information for -1x Boeing (BAES)

London Stock Exchange
Share Price is delayed by 15 minutes
Get Live Data
Share Price: 4.464
Bid: 4.4525
Ask: 4.4755
Change: 0.05125 (1.16%)
Spread: 0.023 (0.517%)
Open: 4.41275
High: 0.00
Low: 0.00
Prev. Close: 4.41275
BAES Live PriceLast checked at -

Watchlists are a member only feature

Login to your account

Alerts are a premium feature

Login to your account

UPDATE2-Bangladesh Bank hackers compromised SWIFT software, warning issued

Mon, 25th Apr 2016 15:00

(Adds that it is still not known how attackers created thefraudulent messages)

By Jim Finkle

April 25 (Reuters) - The attackers who stole $81 millionfrom the Bangladesh centralbank probably hacked into software from the SWIFT financialplatform that is at the heart of the global financial system,said security researchers at British defense contractor BAESystems.

SWIFT, a cooperative owned by 3,000 financial institutions,confirmed to Reuters that it was aware of malware targeting itsclient software. Its spokeswoman Natasha Deteran said SWIFT onMonday released a software update to thwart the malware, alongwith a special warning for financial institutions to scrutinizetheir security procedures.

The developments coming to light the unprecedentedcyber-heist suggest that a lynchpin of the global financialsystem could be more vulnerable than previously understoodbecause of weaknesses that enabled attackers to modify a SWIFTsoftware program installed on bank servers.

The new evidence suggests that hackers manipulated theAlliance Access server software, which banks use to interfacewith SWIFT's messaging platform, in a bid to cover up fraudulenttransfers that had been previously ordered.

The findings from BAE and SWIFT do not explain how thefraudulent orders were created and pushed through the system.That remains a key mystery in ongoing probes into the heist.

Deteran told Reuters on Sunday that SWIFT was issuing thesoftware update "to assist customers in enhancing their securityand to spot inconsistencies in their local database records."She said "the malware has no impact on SWIFT's network or coremessaging services."

The software update and warning from Brussels-based SWIFT,or the Society for Worldwide Interbank FinancialTelecommunication, come after researchers at BAE, whichhas a large cyber-security business, told Reuters they believethey discovered malware that the Bangladesh Bank attackers usedto manipulate SWIFT client software known as Alliance Access.

BAE published its findings on Monday in a blog post onmalware that it said thieves used to cover their tracks anddelay discovery of the heist.

The cyber criminals tried to make fraudulent transferstotaling $951 million from the Bangladesh central bank's account at the Federal Reserve Bank of New York in February.

Most of the payments were blocked, but $81 million wasrouted to accounts in the Philippines and diverted to casinosthere. Most of those funds remain missing.

Investigators probing the heist had previously said thestill-unidentified hackers had broken into Bangladesh Bankcomputers and taken control of credentials that were used to loginto the SWIFT system. But the BAE research shows that the SWIFTsoftware on the bank computers was probably compromised in orderto erase records of illicit transfers.

The SWIFT messaging platform is used by 11,000 banks andother institutions around the world, though only some use theAlliance Access software, Deteran said.

SWIFT may release additional updates as it learns more aboutthe attack in Bangladesh and other potential threats, Deteransaid.

It is also reiterating a warning to banks that they shouldreview internal security.

"Whilst we keep all our interface products under continualreview and recommend that other vendors do the same, the keydefense against such attack scenarios is that users implementappropriate security measures in their local environments tosafeguard their systems," Deteran said.

Adrian Nish, BAE's head of threat intelligence, said he hadnever seen such an elaborate scheme from criminal hackers.

"I can't think of a case where we have seen a criminal go tothe level of effort to customize it for the environment theywere operating in," he said. "I guess it was the realizationthat the potential payoff made that effort worthwhile."

A Bangladesh Bank spokesman declined comment on BAE'sfindings.

A senior official with the Bangladesh Police's CriminalInvestigation Department said that investigators had not foundthe specific malware described by BAE, but that forensicsexperts had not finished their probe.

Bangladesh police investigators said last week that thebank's computer security measures were seriously deficient,lacking even basic precautions like firewalls and relying onused, $10 switches in its local networks.

Still, police investigators told Reuters in an interviewthat both the bank and SWIFT should take the blame for theproblems.

"It was their responsibility to point it out but we haven'tfound any evidence that they advised before the heist," saidMohammad Shah Alam, head of the Forensic Training Institute ofthe Bangladesh police's criminal investigation department,referring to SWIFT.

THWARTING FUTURE ATTACKS

Monday's alert from BAE includes some technical indicatorsthat the firm said it hopes banks could use to thwart similarattacks. Those indicators include the IP address of a server inEgypt the attackers used to monitor use of the SWIFT system byBangladesh Bank staff.

The malware, named evtdiag.exe, was designed to hide thehacker's tracks by changing information on a SWIFT database atBangladesh Bank that tracks information about transfer requests,according to BAE.

BAE said that evtdiag.exe was likely part of a broaderattack toolkit that was installed after the attackers obtainedadministrator credentials.

It is still not clear exactly how the hackers ordered themoney transfers.

Nish said that BAE found evtdiag.exe on a malware repositoryand had not directly analyzed the infected servers. Suchrepositories collect millions of new samples a day fromresearchers, businesses, government agencies and members of thepublic who upload files to see if they are recognized asmalicious and help thwart future attacks.

Nish said he was highly confident the malware was used inthe attack because it was compiled close to the date of theheist, contained detailed information about the bank'soperations and was uploaded from Bangladesh.

While that malware was specifically written to attackBangladesh Bank, "the general tools, techniques and proceduresused in the attack may allow the gang to strike again,"according to a draft of the warning that BAE shared withReuters.

The malware was designed to make a slight change to code ofthe Access Alliance software installed at Bangladesh Bank,giving attackers the ability to modify a database that loggedthe bank's activity over the SWIFT network, Nish said.

Once it had established a foothold, the malware could deleterecords of outgoing transfer requests altogether from thedatabase and also intercept incoming messages confirmingtransfers ordered by the hackers, Nish said.

It was able to then manipulate account balances on logs toprevent the heist from being discovered until after the fundshad been laundered.

It also manipulated a printer that produced hard copies oftransfer requests so that the bank would not identify the attackthrough those printouts, he said.

(Reporting by Jim Finkle in Boston. Additional reporting bySerajul Quadir in Dhaka.; Editing by Jonathan Weber and MartinHowell)

More News
8 Mar 2018 11:42

UPDATE 1-Dassault Aviation voices Brexit concerns as it posts higher profits

* Delays in UK/France drone project -Trappier * Dassault Aviation posts higher 2017 profits * Dividend up to 15.30 euros, 8 -

Read more
16 Feb 2017 17:16

UPDATE 4-Austria sues Airbus over alleged Eurofighter fraud

* Austria accuses Airbus of wilful deception, fraud * Relates to 2 bln euro order for Eurofighter jets * Airbus says denies accusations vigorously * Austria sees potential damages of up to 1.1 bln euros (Adds Airbus statement, details from press conference) By Kirsti Kno

Read more
16 Feb 2017 09:39

Austria sues Airbus, Eurofighter consortium over suspected fraud

VIENNA, Feb 16 (Reuters) - Austria filed a lawsuit on Thursday against Airbus and the Eurofighter consortium, alleging them of wilful deception and fraud linked to a 2 billion euro ($2.1 billion) order for Eurofighter jets in 2003, the defence ministry said. A recently completed ministry in

Read more
16 Feb 2017 05:38

Austria to sue Airbus over suspected Eurofighter fraud - APA

VIENNA, Feb 16 (Reuters) - Austria's defence ministry is set to file a lawsuit against Airbus accusing the group of wilful deception and fraud linked to a 2 billion euro ($2.1 billion) order of Eurofighter jets in 2003, APA news agency said on Thursday. A recently completed ministry investi

Read more
14 Feb 2017 17:20

Rolls-Royce weighs on FTSE 100 after five-day advance

* Rolls-Royce posts record reported loss * TUI jumps on improved results * Banks supported by hawkish Yellen comments (Adds closing prices, details) By Kit Rees LONDON, Feb 14 (Reuters) - Britain's top share index ended slightly lower on Tuesday, pausing after a five-day

Read more
14 Feb 2017 10:08

Rolls-Royce loss lies heavy on FTSE 100

(ADVISORY- Follow European and UK stock markets in real time on the Reuters Live Markets blog on Eikon, see cpurl://apps.cp./cms/?pageId=livemarkets) * Rolls-Royce posts record reported loss * TUI jumps on improved results By Kit Rees LONDON, Feb 14 (Reuters) - Britain's t

Read more
13 Feb 2017 17:04

UPDATE 1-Germany to buy six MKS-180 multi-role warships - ministry

(Adds details, cooperation with Norway) BERLIN, Feb 13 (Reuters) - German Defence Minister Ursula von der Leyen has decided to buy six MKS-180 multi-role warships instead of putting off a decision on two of those ships until 2030, her spokesman said on Monday. The ministry decided las

Read more
13 Feb 2017 15:20

Germany to buy six MKS multi-role warships - ministry

BERLIN, Feb 13 (Reuters) - Germany's Defence Ministry has decided to buy a total of six MKS-180 multi-role warships instead of four, as initially planned, a ministry spokesman said Monday, without providing a new cost estimate for the programme. The ministry decided last October to delay a

Read more
10 Feb 2017 18:54

UPDATE 1-BAE, Northrop, SAIC, others in $3.04 bln U.S. defense contract

(Adds Raytheon) WASHINGTON, Feb 9 (Reuters) - A group of companies including subsidiaries of BAE Systems, Northrop Grumman Corp , Science Applications International Corp, Teledyne Technologies Inc and KBR Inc will share in a $3.04 billion missile defense contract, the Pentagon said on Thurs

Read more
10 Feb 2017 17:51

German, Dutch militaries agree to deepen cooperation -source

By Andrea Shalal BERLIN, Feb 10 (Reuters) - The German and Dutch militaries have agreed to further deepen defence cooperation this year by putting a German short-range air defence unit under the command of the Dutch military, a source familiar with the plans told Reuters on Friday.

Read more
9 Feb 2017 22:47

BAE, Northrop, SAIC, others in $3.04 bln U.S. defense contract

WASHINGTON, Feb 9 (Reuters) - A group of companies including subsidiaries of BAE Systems, Northrop Grumman Corp , Science Applications International Corp, Teledyne Technologies Inc and KBR Inc will share in a $3.04 billion missile defense contract, the Pentagon said on Thursday. The order-d

Read more
8 Feb 2017 00:00

UPDATE 2-Airbus strategy chief Lahoud to leave European group

(Adds background) By Tim Hepher PARIS, Feb 7 (Reuters) - Airbus strategy chief Marwan Lahoud, one of the founders of Europe's largest aerospace group and its M&A czar for the past decade, is leaving the company at the end of February, Airbus said on Tuesday. His successor was no

Read more
3 Feb 2017 16:32

UPDATE 1-Lockheed to announce $8.5 billion F-35 order on Friday-sources

(Adds background, graphic) By Mike Stone WASHINGTON, Feb 3 (Reuters) - The U.S. Department of Defense and Lockheed Martin Corp are set to announce a deal worth about $8.5 billion for 90 F-35 jets on Friday, people familiar with the talks said. The deal for the tenth batch of the

Read more
28 Jan 2017 14:30

Britain, Turkey sign defence deal to develop Turkish fighter jet

ANKARA, Jan 28 (Reuters) - Britain and Turkey signed a defence deal worth more than 100 million pounds ($125 million) on Saturday to develop Turkish fighter jets, opening the way to deeper cooperation over the lifetime of the project. In Ankara to strengthen ties with Turkey as she navigate

Read more
24 Jan 2017 13:00

REFILE-EXCLUSIVE-Germany nears decision to beef up short-range air defences - sources

(Fixes dateline to Jan 24. No changes to text) * Defence systems gap has caused concern among NATO members * Procurement programme 460 million euros - source * Germany under pressure from Trump to up military spending By Andrea Shalal BERLIN, Jan 24 (Reuters) - Germa

Read more

Login to your account

Don't have an account? Click here to register.

Quickpicks are a member only feature

Login to your account

Don't have an account? Click here to register.