Summary
Highlights
The Breach Overview00:00:05
In February 2016, cybercriminals targeted the Bangladesh Central Bank, successfully embezzling $81 million after orchestrating a plan to move nearly $1 billion in fraudulent transactions through the SWIFT network.
Attack Methodology00:00:25
Attackers used malware to breach the bank's network, moving laterally across 32 systems to compromise machines connected to the SWIFT financial network. By gaining local administrator privileges, they installed monitoring software to harvest credentials and manipulate financial transaction messages.
Detection and Security Lessons00:01:25
The attack was discovered due to a spelling error noted by a banker. The incident serves as a critical case study on the importance of managing privileged accounts, utilizing multi-factor authentication, and implementing network segmentation to prevent large-scale financial theft.