By Reason Cybersecurity
on Tue May 31 2016
Remember how your crazy old Aunt Sally stashed all her money in between mattresses because
“You just never can trust a bank to keep your money, Dearie.”?
You all rolled your eyes and pulled out dollar bills when she turned the other way. But hey, maybe she was on to something.
A bit of technical info on bank transfers
If you have ever tried to transfer money overseas from one bank to another you know you’ll need lots and we are talking LOTS of information – the person’s name and bank account number, bank address, bank branch, the IBAN number, which is an internationally agreed upon method to identify accounts within banks, and the eight or eleven digit SWIFT code. The SWIFT code, short for Society for Worldwide Interbank Financial Telecommunication, is a standard set of bank identifier codes and a unique identifier for the particular bank. The SWIFT code is sort of like a message relay system to send instruction on how and where to transfer money from one bank to another.
In theory, all these codes and numbers come together to ensure that the money gets sent from the right account and ends up in the right account.
This is all good and well when hackers aren’t in the picture. But when they do rear their ugly little criminally-minded heads, things don’t go as they should. Back in February of this year, $81 million was plucked out of the Bangladesh Central Bank by malware that send fraudulent messages using the SWIFT code protocol. By way of instructions sent using SWIFT, the bank was told to send the money to a specified foreign account in incremental amounts. Then in May a bank in Vietnam disclosed that it had been successful in thwarting an attack of about $1 million and now a third bank in Ecuador has been attacked using the same malware and the same method – and this time the hackers got away with $12 million.
Trojan.banswift’s deep roots
The crafty hackers are using a trojan called trojan.banswift to get in and create the instructions used to create fraudulent transfers. Trojan.banswift is linked to other very powerful banking trojans that have been used for years in all sorts of bank breaches. It’s also linked to a hacking group known as “Lazarus” which has been targeting businesses for years. Lazarus, in turn, is linked to the malware that helped breach Sony in the infamous Sony breach of 2014. Powerful stuff, indeed.
According to Bloomberg News, SWIFT has called on all member banks “to “urgently review” payments and messaging controls” but that ultimately, “members are responsible for their own system interfaces”. And while you might not be thinking of sending any large sums of money across the pond any time soon, there are a few lessons to take away here when it comes to your own online banking habits:
Lastly, like SWIFT said, ultimately the responsibility is yours – It’s up to you to make sure you do all you can to secure your digital identity, because no one else is going to take care of it for you. You don’t need to stash your cash in your bedroom, just make sure you use your head and secure down your online bank accounts and credentials. That way, nobody can say you’re as eccentric as old Aunt Sally, and you might just earn a few dollars in interest along the way too.