Clicky

  • Login
  • Register
  • Submit Your Content
  • Contact Us
Sunday, August 25, 2024
World Tribune
No Result
View All Result
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food
Submit
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food
No Result
View All Result
World Tribune
No Result
View All Result

ICBC, the world’s biggest bank, hit by ransomware cyberattack

November 10, 2023
in News
Reading Time: 4 mins read
A A
ICBC, the world’s biggest bank, hit by ransomware cyberattack
0
SHARES
ShareShareShareShareShare

READ ALSO

Boeing Starliner returning empty, NASA to use SpaceX to get astronauts

Meta says WhatsApp accounts tied to Iran hackers targeted Biden, Trump

A pedestrian walks pass a branch of Industrial & Commercial Bank of China (ICBC) in Fuzhou, Fujian province of China.

VCG | Getty Images

The U.S. financial services division of Chinese bank ICBC was hit with a cyberattack that reportedly disrupted the trading of Treasurys.

Industrial and Commercial Bank of China, the world’s largest lender by assets, said Thursday that its financial services arm, called ICBC Financial Services, experienced a ransomware attack “that resulted in disruption to certain” systems.

Immediately after discovering the hack, ICBC “isolated impacted systems to contain the incident,” the state-owned bank said.

Ransomware is a type of cyberattack. It involves hackers taking control of systems or information and only letting them go once the victim has paid a ransom. It’s a type of attack that has seen an explosion in popularity among bad actors in recent years.

ICBC did not reveal who was behind the attack but said it has been “conducting a thorough investigation and is progressing its recovery efforts with the support of its professional team of information security experts.”

The Chinese bank also said it is working with law enforcement.

ICBC said it “successfully cleared” U.S. Treasury trades executed Wednesday and repo financing trades done on Thursday. A repo is a repurchase agreement, a type of short-term borrowing for dealers in government bonds.

However, multiple news outlets reported there was disruption to U.S. Treasury trades. The Financial Times, citing traders and banks, said Friday that the ransomware attack prevented the ICBC division from settling Treasury trades on behalf of other market participants.

The U.S. Treasury Department told CNBC: “We are aware of the cybersecurity issue and are in regular contact with key financial sector participants, in addition to federal regulators. We continue to monitor the situation.”

ICBC said the email and business systems of its U.S. financial services arm operate independently of ICBC’s China operations. The systems of its head office, the ICBC New York branch, and other domestic and overseas affiliated institutions were not affected by the cyberattack, ICBC said.

What did the Chinese government say?

Wang Wenbin, spokesperson for China’s Ministry of Foreign Affairs, said Friday that ICBC is striving to minimize the impact and losses after the attack, according to a Reuters report.

Speaking at a regular news conference, Wang said ICBC has paid close attention to the matter and has handled the emergency response and supervision well, the Reuters report said.

What do we know about the ransomware attack?

Nobody has claimed responsibility for the attack yet and ICBC has not said who might be behind it.

In the cybersecurity world, finding out who is behind a cyberattack is often very difficult due to the techniques hackers use to mask their locations and identities.

But there are clues about what kind of software was used to carry out the attack.

Marcus Murray, founder of Swedish cybersecurity firm Truesec, said the ransomware used is called LockBit 3.0. Murray said this information has come from sources with relations to Truesec, but was unable to reveal who those sources are due to confidentiality reasons. The Financial Times reported, citing two sources, that LockBit 3.0 was the software behind the attack too. CNBC was unable to independently verify the information.

This kind of ransomware can make its way into an organization in many ways. For example, by someone clicking on a malicious link in an email. Once in, its aim is to extract sensitive information about a company.

The VMware cybersecurity team said in a blog last year that LockBit 3.0 is a “challenge for security researchers because each instance of the malware requires a unique password to run without which analysis is extremely difficult or impossible.” The researchers added that the ransomware is “heavily protected” against analysis.

The U.S. government’s Cybersecurity and Infrastructure Security Agency calls LockBit 3.0 “more modular and evasive,” making it harder to detect.

LockBit is the most popular strain of ransomware, accounting for around 28% of all known ransomware attacks from July 2022 to June 2023, according to data from cybersecurity firm Flashpoint.

What is LockBit?

LockBit is the group behind the software. Its business model is known as “ransomware-as-a-service.” It effectively sells its malicious software to other hackers, known as affiliates, who then go on to carry out the cyberattacks.

The leader of the group goes by the online name of “LockBitSup” on dark web hacking forums.

“The group primarily posts in Russian and English, but according to its website, the group claims to be located in the Netherlands and to not be politically motivated,” Flashpoint said in a blogpost.

ICBC, the world’s biggest bank, hit by ransomware cyberattack

The group’s malware is known to target small and medium-sized businesses.

LockBit has previously claimed responsibility for ransomware attacks on Boeing and the U.K’s. Royal Mail.

In June, the U.S. Department of Justice charged a Russian national for his involvement in “deploying numerous LockBit ransomware and other cyberattacks” against computers in the U.S., Asia, Europe and Africa.

“LockBit actors have executed over 1,400 attacks against victims in the United States and around the world, issuing over $100 million in ransom demands and receiving at least as much as tens of millions of dollars in actual ransom payments made in the form of bitcoin,” the DOJ said in a press release in June.

— CNBC’s Steve Kopack contributed to this article.

Credit: Source link

ShareTweetSendSharePin
Previous Post

What Lies Ahead in 2024 for Food Processing Manufacturers?  

Next Post

Motorsport icon Marc Marquez shares his biggest and toughest decision

Related Posts

Boeing Starliner returning empty, NASA to use SpaceX to get astronauts
News

Boeing Starliner returning empty, NASA to use SpaceX to get astronauts

August 25, 2024
Meta says WhatsApp accounts tied to Iran hackers targeted Biden, Trump
News

Meta says WhatsApp accounts tied to Iran hackers targeted Biden, Trump

August 24, 2024
Intel has hired Morgan Stanley to defend against activists: sources
News

Intel has hired Morgan Stanley to defend against activists: sources

August 24, 2024
Workday stock gains as software provider widens 2027 margin target
News

Workday stock gains as software provider widens 2027 margin target

August 24, 2024
The big mistake that can leave you ‘highly disappointed’ with your vacation
News

The big mistake that can leave you ‘highly disappointed’ with your vacation

August 23, 2024
Microsoft plans September cybersecurity event after CrowdStrike outage
News

Microsoft plans September cybersecurity event after CrowdStrike outage

August 23, 2024
Next Post
Motorsport icon Marc Marquez shares his biggest and toughest decision

Motorsport icon Marc Marquez shares his biggest and toughest decision

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

What's New Here!

Dentist charged after police find hidden camera in employee bathroom

Dentist charged after police find hidden camera in employee bathroom

August 13, 2024
Bosses are making staff RTO—or quit (but they’re absent themselves)

Bosses are making staff RTO—or quit (but they’re absent themselves)

July 29, 2024
Modi’s BJP in ‘internal battle’ over whether India needs Chinese investments

Modi’s BJP in ‘internal battle’ over whether India needs Chinese investments

August 1, 2024
You can snag an Anker 10K MagSafe power bank now for

You can snag an Anker 10K MagSafe power bank now for $32

July 30, 2024
How Japan’s yen could be ripping through U.S. stocks

How Japan’s yen could be ripping through U.S. stocks

August 2, 2024
Why rich people are suddenly flocking to Walmart

Why rich people are suddenly flocking to Walmart

August 15, 2024
Sydney McLaughlin leads USA to dominant 4x400m Olympic gold

Sydney McLaughlin leads USA to dominant 4x400m Olympic gold

August 10, 2024

About

World Tribune is an online news portal that shares the latest news on world, business, health, tech, sports, and related topics.

Follow us

Recent Posts

  • ‘Makes all of us look small’
  • Babe Ruth’s ‘called shot’ jersey could see price soar 3,000%
  • Boeing Starliner returning empty, NASA to use SpaceX to get astronauts
  • Doug Pederson takes jab at Mac Jones’ development with Patriots

Newslatter

Loading
  • Submit Your Content
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2024 World Tribune - All Rights Reserved!

No Result
View All Result
  • Home
  • News
  • Business
  • Technology
  • Sports
  • Health
  • Food

© 2024 World Tribune - All Rights Reserved!

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In