Skip to main content

Hackers steal up to $1 billion in huge online bank heist

kentucky hospital subjected to ransomware hacker keyboard
Image used with permission by copyright holder
A huge and highly sophisticated malware attack affecting multiple banks in as many as 30 countries has reportedly netted those behind the crime as much as $1 billion over the last two years.

Chris Doggett of computer security firm Kaspersky North America told the NY Times the malware used by the cybercriminals represented a marked increase in the complexity of such attacks on financial organizations.

“This is likely the most sophisticated attack the world has seen to date in terms of the tactics and methods that cybercriminals have used to remain covert,” Doggett said.

Kaspersky pegged the stolen amount at between $300 million and $1 billion, adding that so far it hasn’t been able to offer a more definitive figure as each of the detected thefts was limited to a maximum amount of $10 million.

The security firm said the attack started in late 2013 when the cybergang sent emails to hundreds of bank workers that tricked them into downloading the malicious software. This gave hackers the opportunity to trawl a bank’s computer network in search of employees operating its money transfer systems and ATMs.

The criminals then installed tools capable of capturing video and screenshots of employees’ workstations to learn how they worked.

Kaspersky’s Sergey Golovanov told the NY Times that the cybergang’s goal was “to mimic [the bank’s] activities,” adding, “That way, everything would look like a normal, everyday transaction.”

When the necessary information had been gathered, fake accounts were set up in a number of countries into which money transfers were made. ATMs were also commandeered to dispense cash to waiting associates.

According to Kaspersky, hacking into banks’ accounting operations has netted the gang the largest amounts. Using this method, the gang would inflate an account’s balance and then immediately withdraw the inflated amount before returning the account to its original balance. Such a method made it harder for the account holder and bank to spot that an illegal transaction had taken place.

While most of the targets have been in Russia, banks in the U.S., Europe, and Japan have also been hit. None of the affected banks have so far been named, though Kaspersky said law enforcement agencies around the world, among them the FBI, have already been briefed on its findings.

The security firm plans to publish a full report on the incident today.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Even the new mid-tier Snapdragon X Plus beats Apple’s M3
A photo of the Snapdragon X Plus CPU in the die

You might have already heard of the Snapdragon X Elite, the upcoming chips from Qualcomm that everyone's excited about. They're not out yet, but Qualcomm is already announcing another configuration to live alongside it: the Snapdragon X Plus.

The Snapdragon X Plus is pretty similar to the flagship Snapdragon X Elite in terms of everyday performance but, as a new chip tier, aims to bring AI capabilities to a wider portfolio of ARM-powered laptops. To be clear, though, this one is a step down from the flagship Snapdragon X Elite, in the same way that an Intel Core Ultra 7 is a step down from Core Ultra 9.

Read more
Gigabyte just confirmed AMD’s Ryzen 9000 CPUs
Pads on the AMD Ryzen 7 7800X3D.

Gigabyte spoiled AMD's surprise a bit by confirming the company's next-gen CPUs. In a press release announcing a new BIOS for X670, B650, and A620 motherboards, Gigabyte not only confirmed that support has been added for next-gen AMD CPUs, but specifically referred to them as "AMD Ryzen 9000 series processors."

We've already seen MSI and Asus add support for next-gen AMD CPUs through BIOS updates, but neither of them called the CPUs Ryzen 9000. They didn't put out a dedicated press release for the updates, either. It should go without saying, but we don't often see a press release for new BIOS versions, suggesting Gigabyte wanted to make a splash with its support.

Read more
ExpressVPN Deals: Save 49% when you sign up today
Express VPN logo.

VPNs have become pretty important in the modern world, whether it's a matter of unlocking geo-blocked content or providing an extra layer of security to your connection when you're out in public. Luckily, one of the best VPNs on the market has a sale right now that will save you 49% on the regular pricing. You also get a 30-day money-back guarantee to test it out, which is great because there isn't any Express VPN free trial you can take advantage of. That said, if the deal below doesn't quite tickle your fancy, or Express VPN is not the VPN that fits your needs, you can check out some of these other great VPN deals as well.

Today's Best ExpressVPN Deal

Read more