{"id":26904,"date":"2017-04-15T11:14:51","date_gmt":"2017-04-15T11:14:51","guid":{"rendered":"http:\/\/www.biphoo.com\/bipnews\/?p=26904"},"modified":"2017-04-15T11:14:51","modified_gmt":"2017-04-15T11:14:51","slug":"hackers-release-files-indicating-nsa-monitored-global-bank-transfers","status":"publish","type":"post","link":"https:\/\/www.biphoo.com\/bipnews\/technology\/hackers-release-files-indicating-nsa-monitored-global-bank-transfers.html","title":{"rendered":"Hackers release files indicating NSA monitored global bank transfers"},"content":{"rendered":"<h2 style=\"text-align: justify;\">\n\t<span style=\"font-size:22px;\"><strong><span style=\"font-family:arial,helvetica,sans-serif;\">Hackers release files indicating NSA monitored global bank transfers<\/span><\/strong><\/span><br \/>\n<\/h2>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Hackers released documents and files on Friday that cybersecurity experts said indicated the U.S. National Security Agency had accessed the SWIFT interbank messaging system, allowing it to monitor money flows among some Middle Eastern and Latin American banks.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The release included computer code that could be adapted by criminals to break into SWIFT servers and monitor messaging activity, said Shane Shook, a cyber security consultant who has helped banks investigate breaches of their SWIFT systems.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The documents and files were released by a group calling themselves The Shadow Brokers. Some of the records bear NSA seals, but Reuters could not confirm their authenticity.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The NSA could not immediately be reached for comment.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Also published were many programs for attacking various versions of the Windows operating system, at least some of which still work, researchers said.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In a statement to Reuters, Microsoft (MSFT.O), maker of Windows, said it had not been warned by any part of the U.S. government that such files existed or had been stolen.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&quot;Other than reporters, no individual or organization has contacted us in relation to the materials released by Shadow Brokers,&quot; the company said.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The absence of warning is significant because the NSA knew for months about the Shadow Brokers breach, officials previously told Reuters. Under a White House process established by former President Barack Obama&#39;s staff, companies were usually warned about dangerous flaws.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Shook said criminal hackers could use the information released on Friday to hack into banks and steal money in operations mimicking a heist last year of $81 million from the Bangladesh central bank.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&quot;The release of these capabilities could enable fraud like we saw at Bangladesh Bank,&quot; Shook said.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The SWIFT messaging system is used by banks to transfer trillions of dollars each day. Belgium-based SWIFT downplayed the risk of attacks employing the code released by hackers on Friday.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">SWIFT said it regularly releases security updates and instructs client banks on how to handle known threats.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&quot;We mandate that all customers apply the security updates within specified times,&quot; SWIFT said in a statement.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">SWIFT said it had no evidence that the main SWIFT network had ever been accessed without authorization.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">It was possible that the local messaging systems of some SWIFT client banks had been breached, SWIFT said in a statement, which did not specifically mention the NSA.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">When cyberthieves robbed the Bangladesh Bank last year, they compromised that bank&#39;s local SWIFT network to order money transfers from its account at the New York Federal Reserve.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The documents released by the Shadow Brokers on Friday indicate that the NSA may have accessed the SWIFT network through service bureaus. SWIFT service bureaus are companies that provide an access point to the SWIFT system for the network&#39;s smaller clients and may send or receive messages regarding money transfers on their behalf.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;If you hack the service bureau, it means that you also have access to all of their clients, all of the banks,&quot; said Matt Suiche, founder of the United Arab Emirates-based cybersecurity firm Comae Technologies, who has studied the Shadow Broker releases and believes the group has access to NSA files.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The documents posted by the Shadow Brokers include Excel files listing computers on a service bureau network, user names, passwords and other data, Suiche said.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">&ldquo;That&#39;s information you can only get if you compromise the system,&quot; he said.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">ATTEMPT TO MONITOR FLOW OF MONEY<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Cris Thomas, a prominent security researcher with the cybersecurity firm Tenable, said the documents and files released by the Shadow Brokers show &ldquo;the NSA has been able to compromise SWIFT banking systems, presumably as a way to monitor, if not disrupt, financial transactions to terrorists groups&rdquo;. &nbsp;<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Since the early 1990s, interrupting the flow of money from Saudi Arabia, the United Arab Emirates and elsewhere to al Qaeda, the Taliban, and other militant Islamic groups in Afghanistan, Pakistan and other countries has been a major objective of U.S. and allied intelligence agencies.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Mustafa Al-Bassam, a computer science researcher at University College London, said on Twitter that the Shadow Brokers documents show that the &quot;NSA hacked a bunch of banks, oil and investment companies in Palestine, UAE, Kuwait, Qatar, Yemen, more.&quot;<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">He added that NSA &quot;completely hacked&quot; EastNets, one of two SWIFT service bureaus named in the documents that were released by the Shadow Brokers.&nbsp;<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Reuters could not independently confirm that EastNets had been hacked.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">EastNets, based in Dubai, denied it had been hacked in a statement, calling the assertion &quot;totally false and unfounded.&quot;<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">EastNets ran a &quot;complete check of its servers and found no hacker compromise or any vulnerabilities,&quot; according to a statement from EastNets&#39; chief executive and founder, Hazem Mulhim.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">In 2013, documents released by former NSA contractor Edward Snowden said the NSA had been able to monitor SWIFT messages.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The agency monitored the system to spot payments intended to finance crimes, according to the documents released by Snowden.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Reuters could not confirm whether the documents released Friday by the Shadow Brokers, if authentic, were related to NSA monitoring of SWIFT transfers since 2013.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Some of the documents released by the Shadow Brokers were dated 2013, but others were not dated.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:18px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">The documents released by the hackers did not clearly indicate whether the NSA had actually used all the techniques cited for monitoring SWIFT messages.<\/span><\/span>\n<\/p>\n<p style=\"text-align: justify;\">\n\t<span style=\"font-size:9px;\"><span style=\"font-family:arial,helvetica,sans-serif;\">Source:-&nbsp;http:\/\/www.reuters.com\/article\/us-usa-cyber-swift-idUSKBN17G1HC<\/span><\/span><\/p>\n<div class=\"fb-background-color\">\n\t\t\t  <div \n\t\t\t  \tclass = \"fb-comments\" \n\t\t\t  \tdata-href = \"https:\/\/www.biphoo.com\/bipnews\/technology\/hackers-release-files-indicating-nsa-monitored-global-bank-transfers.html\"\n\t\t\t  \tdata-numposts = \"10\"\n\t\t\t  \tdata-lazy = \"true\"\n\t\t\t\tdata-colorscheme = \"light\"\n\t\t\t\tdata-order-by = \"social\"\n\t\t\t\tdata-mobile=true>\n\t\t\t  <\/div><\/div>\n\t\t  <style>\n\t\t    .fb-background-color {\n\t\t\t\tbackground: #ffffff !important;\n\t\t\t}\n\t\t\t.fb_iframe_widget_fluid_desktop iframe {\n\t\t\t    width: 630px !important;\n\t\t\t}\n\t\t  <\/style>\n\t\t  ","protected":false},"excerpt":{"rendered":"<p>Hackers release files indicating NSA monitored global bank transfers Hackers released documents and files on Friday that cybersecurity experts said indicated the U.S. National Security Agency had accessed the SWIFT interbank messaging system, allowing it to monitor money flows among some Middle Eastern and Latin American banks. The release included [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":26907,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13],"tags":[16933],"class_list":["post-26904","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology","tag-hackers-release-files-indicating-nsa-monitored-global-bank-transfers"],"_links":{"self":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/26904","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/comments?post=26904"}],"version-history":[{"count":0,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/posts\/26904\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media\/26907"}],"wp:attachment":[{"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/media?parent=26904"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/categories?post=26904"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.biphoo.com\/bipnews\/wp-json\/wp\/v2\/tags?post=26904"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}