{"id":875,"date":"2016-03-15T15:26:55","date_gmt":"2016-03-15T15:26:55","guid":{"rendered":"https:\/\/antivirus.comodo.com\/blog\/?p=875"},"modified":"2024-11-07T14:54:27","modified_gmt":"2024-11-07T09:24:27","slug":"hackers-could-have-injected-malware-in-bangladesh-bank","status":"publish","type":"post","link":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/","title":{"rendered":"Hackers Could have Injected Malware in Bangladesh Bank"},"content":{"rendered":"<p>The Bangladesh Bank &#8211; the Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves. They have gotten away with about $80 million, and chances of recovering them look pretty bleak.<\/p>\n<p>The Bangladesh Bank has an account at the Federal Reserve Bank of New York for performing international settlements. The cyber thieves seem to have somehow penetrated and installed malware in the computer systems of the bank in Dhaka. The <a href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/inside-look-fight-malware\/\" target=\"_blank\" rel=\"noopener\">malware<\/a> seems to have stayed dormant and the thieves observed and planned on how to steal the money.<\/p>\n<p>Banks use the SWIFT messaging system for ensuring the <a href=\"https:\/\/cwatch.comodo.com\/?af=9356\" target=\"_blank\" rel=\"noopener\">website security<\/a> of financial communication between banks. Each bank has credentials for operating, and the credentials of Bangladesh Bank could probably have been stolen and then used for placing requests with the Federal Reserve Bank of New York to transfer $1.01 billion. This was done in 5 transactions, and while 4 transactions totalling about 81 million got through, the fifth got blocked due to a typo, which led on to the discovery of the breach.<\/p>\n<p>The four transactions got routed to four accounts in the Philippines belonging to Rizal Commercial Banking Corp. There had not been any activities in these accounts earlier. The money was then consolidated in a businessman&#8217;s foreign-currency accounts and then moved to casinos and a money-transfer firm. The Anti-Money Laundering Council of The Philippines has deemed this transfer as illegal and has initiated proceedings to charge those involved in the laundering activity. Till now, some of the stolen money has been recovered.<\/p>\n<p>The fifth transaction of about $20 million was routed to a purported NGO in Sri Lanka. A spelling mistake in the recipient&#8217;s name made the routing bank &#8211; Deutsche Bank &#8211; to seek clarification from the Bangladesh Bank. The transaction was stopped. The Federal Reserve Bank of New York also observed the high-value transactions and became suspicious. It passed on the information to the central bank.<\/p>\n<p>The days forward will let us know how the Bangladesh Central Bank breach took place. <a href=\"https:\/\/blog.comodo.com\/cybersecurity\/cyber-security-in-us\/\" rel=\"noopener\" target=\"_blank\" title=\"cyber security\">Cyber security<\/a> experts pore over the events, the computer systems, possible malware infections, network and communication systems, encryption systems and the security systems to analyze what could have happened.<\/p>\n<p>The blame game is on and the Bangladesh <a href=\"https:\/\/www.comodo.com\/landing\/secure-government-institutions\/\" target=\"_blank\" rel=\"noopener\">government<\/a> has put the blame on the central bank for incompetent handling of the issue. The Bangladesh government has also blamed the New York Fed for observing the transactions so late. The New York Fed has however stated that hackers had not breached its system and the breach could be at the central bank&#8217;s end.<\/p>\n<p>The investigators are studying other possibilities of how the hack could have taken place. The central bank&#8217;s IT infrastructure including network architecture, <a href=\"https:\/\/personalfirewall.comodo.com\/what-is-firewall.html\" target=\"_blank\" rel=\"noopener\">firewall<\/a>,<a href=\"https:\/\/antivirus.comodo.com\/blog\/computer-safety\/top-4-security-threats-to-windows-10\/\"> antimalware <\/a>solutions, internet protocol, encryption and insider vulnerabilities are being studied. The encrypted SWIFT messaging system is also being investigated for possible Man-in-the-Middle (MitM) attacks. Till now it is believed that the SWIFT communication has not been breached. This is because the message transmission takes place on SwiftNet &#8211; its private IP network infrastructure, which is also end-to-end encrypted.<\/p>\n<p>One other possibility could be that a user on the central bank&#8217;s network had unknowingly opened a malware-laced attachment, which could have led to installation of an advanced persistent threat (APT), or a zero-day malware. An effective <a href=\"https:\/\/enterprise.comodo.com\/blog\/what-is-virus-removal\/\" target=\"_blank\" rel=\"noopener\">virus protection software<\/a> (antivirus) that sandboxes all unknown files, and a strong firewall could have prevented this attack if it had been through a malware-laced attachment. Also, another possibility could have been an insider who could have introduced the malware intentionally.<\/p>\n<p>Further investigations could show how the malware had been planted inside the systems. However, the chances of tracking the cyber thieves remain quite bleak.<\/p>\n<p><a href=\"https:\/\/antivirus.comodo.com\/download\/thank-you.php?prod=cloud-antivirus&#038;track=16678&#038;af=16678\" target=\"_blank\" rel=\"noopener\" onclick=\"ga('send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Download', eventLabel: 'Bottom FREE DOWNLOAD banner Product AV'});ga('nT.send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Download', eventLabel: 'Bottom FREE DOWNLOAD banner Product AV'});\"><img decoding=\"async\" class=\"aligncenter size-full wp-image-8604\" src=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\" alt=\"comodo antivirus\"\/><\/a><\/p>\n<p><a href=\"https:\/\/secure.nurd.com\/home\/purchase.php?pid=109&#038;af=16166\" target=\"_blank\" rel=\"noopener\" onclick=\"ga('send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Click', eventLabel: 'GET COMPLETE PROTECTION banner Product CIS Pro'});ga('nT.send', 'event', {eventCategory: 'Antivirus Blog', eventAction: 'Click', eventLabel: 'GET COMPLETE PROTECTION banner Product CIS Pro'});\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-8604\" src=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2020\/08\/complete-antivirus.png\" alt=\"comodo antivirus\" width=\"650\" height=\"83\" \/><\/a><\/p>\n<p><strong>Related Resources<\/strong><br \/>\n<a href=\"https:\/\/www.comodo.com\/home\/internet-security\/antivirus.php\" target=\"blank\" rel=\"noopener\">Antivirus Software<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Bangladesh Bank &#8211; the Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves. They have gotten away with about $80 million, and chances of recovering them look pretty bleak. The Bangladesh Bank has an account at the Federal Reserve Bank of New York for performing [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[26],"class_list":["post-875","post","type-post","status-publish","format-standard","hentry","category-comodo-news","tag-malware"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Hackers Could have Injected Malware in Bangladesh Bank<\/title>\n<meta name=\"description\" content=\"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Hackers Could have Injected Malware in Bangladesh Bank\" \/>\n<meta property=\"og:description\" content=\"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves\" \/>\n<meta property=\"og:url\" content=\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/\" \/>\n<meta property=\"og:site_name\" content=\"Comodo Antivirus Blogs | Anti-Virus Software Updates\" \/>\n<meta property=\"article:published_time\" content=\"2016-03-15T15:26:55+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-11-07T09:24:27+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\" \/>\n<meta name=\"author\" content=\"seo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"seo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/\",\"name\":\"Hackers Could have Injected Malware in Bangladesh Bank\",\"isPartOf\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\",\"datePublished\":\"2016-03-15T15:26:55+00:00\",\"dateModified\":\"2024-11-07T09:24:27+00:00\",\"author\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462\"},\"description\":\"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves\",\"breadcrumb\":{\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\",\"contentUrl\":\"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png\",\"width\":647,\"height\":250,\"caption\":\"Comodo Free Antivirus\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/antivirus.comodo.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Hackers Could have Injected Malware in Bangladesh Bank\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#website\",\"url\":\"https:\/\/antivirus.comodo.com\/blog\/\",\"name\":\"Comodo Antivirus Blogs | Anti-Virus Software Updates\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/antivirus.comodo.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462\",\"name\":\"seo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g\",\"caption\":\"seo\"},\"url\":\"https:\/\/antivirus.comodo.com\/blog\/author\/seo\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Hackers Could have Injected Malware in Bangladesh Bank","description":"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/","og_locale":"en_US","og_type":"article","og_title":"Hackers Could have Injected Malware in Bangladesh Bank","og_description":"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves","og_url":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/","og_site_name":"Comodo Antivirus Blogs | Anti-Virus Software Updates","article_published_time":"2016-03-15T15:26:55+00:00","article_modified_time":"2024-11-07T09:24:27+00:00","og_image":[{"url":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png","type":"","width":"","height":""}],"author":"seo","twitter_card":"summary_large_image","twitter_misc":{"Written by":"seo","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/","url":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/","name":"Hackers Could have Injected Malware in Bangladesh Bank","isPartOf":{"@id":"https:\/\/antivirus.comodo.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage"},"image":{"@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage"},"thumbnailUrl":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png","datePublished":"2016-03-15T15:26:55+00:00","dateModified":"2024-11-07T09:24:27+00:00","author":{"@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462"},"description":"Central bank of Bangladesh, has been hacked and breached, and nearly $1 billion has been stolen by cyberthieves","breadcrumb":{"@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#primaryimage","url":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png","contentUrl":"https:\/\/antivirus.comodo.com\/blog\/wp-content\/uploads\/2018\/04\/Comodo-Free-Antivirus.png","width":647,"height":250,"caption":"Comodo Free Antivirus"},{"@type":"BreadcrumbList","@id":"https:\/\/antivirus.comodo.com\/blog\/comodo-news\/hackers-could-have-injected-malware-in-bangladesh-bank\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/antivirus.comodo.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Hackers Could have Injected Malware in Bangladesh Bank"}]},{"@type":"WebSite","@id":"https:\/\/antivirus.comodo.com\/blog\/#website","url":"https:\/\/antivirus.comodo.com\/blog\/","name":"Comodo Antivirus Blogs | Anti-Virus Software Updates","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/antivirus.comodo.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/e534eccce9a7e6ced088443c73329462","name":"seo","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/antivirus.comodo.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3b7714e98dafc3a3b391832c0f5e2b406856b62c8e81ad94382c197cdb380790?s=96&d=mm&r=g","caption":"seo"},"url":"https:\/\/antivirus.comodo.com\/blog\/author\/seo\/"}]}},"post_mailing_queue_ids":[],"_links":{"self":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/875","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/comments?post=875"}],"version-history":[{"count":34,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/875\/revisions"}],"predecessor-version":[{"id":17721,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/posts\/875\/revisions\/17721"}],"wp:attachment":[{"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/media?parent=875"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/categories?post=875"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/antivirus.comodo.com\/blog\/wp-json\/wp\/v2\/tags?post=875"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}