hacker documents show nsa tools for breaching global money transfer system
Last Updated : GMT 06:49:16
Arab Today, arab today
Arab Today, arab today
Last Updated : GMT 06:49:16
Arab Today, arab today

Hacker documents show NSA tools for breaching global money transfer system

Arab Today, arab today

Arab Today, arab today Hacker documents show NSA tools for breaching global money transfer system

- File picture
Hong Kong/San Francisco - Arab today

Documents and computer files released by hackers provide a blueprint for how the US National Security Agency (NSA) likely used weaknesses in commercially available software to gain access to the global system for transferring money between banks, a review of the data showed.

On Friday, a group calling itself the Shadow Brokers released documents and files indicating NSA had accessed the SWIFT money-transfer system through service providers in the Middle East and Latin America. That release was the latest in a series of disclosures by the group in recent months. 

Matt Suiche, founder of cybersecurity firm Comae Technologies, wrote in a blog post that screen shots indicated some SWIFT affiliates were using Windows servers that were vulnerable at the time, in 2013, to the Microsoft exploits published by the Shadow Brokers. He said he concluded that the NSA took advantage and got in that way.

"As soon as they bypass the firewalls, they target the machines using Microsoft exploits," Suiche told Reuters. Exploits are small programs for taking advantage of security flaws. Hackers use them to insert back doors for continued access, eavesdropping or to insert other tools.

"We now have all of the tools the NSA used to compromise SWIFT (via) Cisco firewalls, Windows," Suiche said.

Reuters was not able to independently verify the authenticity of the documents released by the hackers. Microsoft acknowledged the vulnerabilities and said they had been patched. Cisco Systems Inc has previously acknowledged that its firewalls had been vulnerable.

Cisco and the NSA did not reply to requests for comment. Belgium-based SWIFT on Friday downplayed the risk of attacks employing the code released by hackers and said it had no evidence that the main SWIFT network had ever been accessed without authorization.

It was possible that the local messaging systems of some SWIFT client banks had been breached, SWIFT said in a statement, which did not specifically mention the NSA.

Breach of firewalls

A PowerPoint presentation that was part of the most recent Shadow Brokers release indicates the NSA used a tool codenamed BARGLEE to breach the SWIFT service providers' security firewalls.

The NSA's official seal appeared on one of the slides in the presentation, although Reuters could not independently determine the authenticity of the slides.

The slide referred to ASA firewalls. Cisco is the only company that makes ASA firewalls, according to a Cisco employee who spoke on condition of anonymity. ASA stands for Adaptive Security Appliance and is a combined firewall, antivirus, intrusion prevention and virtual private network, or VPN.

Documents included in the Shadow Brokers release suggest that the NSA, after penetrating the firewall of the SWIFT service providers, used Microsoft exploits to target the computers interacting with the SWIFT network, Comae Technologies' Suiche said.

The Al Quds Bank for Development and Investment, for example, was running a Windows 2008 server that at the time was vulnerable to newly disclosed Windows exploits, he said.

Microsoft late on Friday said it had determined that prior patches to dozens of software versions had fixed the flaws that apparently were exploited by nine of the NSA programs. Four of the vulnerabilities were blocked by comprehensive updates on March 14. That left only older, unsupported versions of Windows operating systems and Exchange email servers at risk to three of the newly released exploits, the company said.

Earlier Friday, Microsoft had said the company had not been warned by the government or other outsiders about the stolen programs.

Microsoft declined to say how it learned of the exploits without outside help. The company's security systems are capable of detecting attacks against customers, and Microsoft in the past has monitored discussion about exploits on the Internet and also hired former intelligence agency veterans to help it devise programming to protect its software from encroachment.

The NSA targeted nine computer servers at a SWIFT contractor, Dubai-based service bureau EastNets, according to the documents. The US intelligence agency then used lines of code to query the SWIFT servers and Oracle databases handling the SWIFT transactions, according to the documents.

 

 

Source: Timesofoman

arabstoday
arabstoday

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

hacker documents show nsa tools for breaching global money transfer system hacker documents show nsa tools for breaching global money transfer system

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

hacker documents show nsa tools for breaching global money transfer system hacker documents show nsa tools for breaching global money transfer system

 



GMT 12:49 2017 Wednesday ,06 September

Senegal wants to buy 10 units of ship from PT PAL Indonesia

GMT 22:57 2017 Wednesday ,01 March

Trump lays out his vision of America to Congress

GMT 21:08 2017 Sunday ,17 September

OIC condemns suicide attack in Cameroon

GMT 00:59 2017 Sunday ,10 December

hmad Zahid's Visit To Rohingya Camp

GMT 02:25 2017 Friday ,24 February

Pope in emotion-charged visit to Italy quake zone

GMT 22:26 2016 Thursday ,22 September

Indian market closes higher

GMT 05:52 2016 Wednesday ,05 October

Robin Williams’ widow details actor’s final days

GMT 18:42 2017 Saturday ,07 October

Education, Works ministries discuss cooperation

GMT 03:11 2017 Friday ,14 April

5 Sudanese soldiers killed in Yemen

GMT 15:35 2017 Saturday ,25 February

United Nations chief arrives in Saudi

GMT 20:47 2017 Saturday ,07 October

PM asserts to bolster relations with Egypt

GMT 07:09 2017 Wednesday ,29 March

Ellie Goulding to Open Mawazine Festival

GMT 05:01 2017 Friday ,05 May

Arab Media Forum begins in Dubai

GMT 01:12 2017 Wednesday ,18 October

Fights against climate change, terrorism linked

GMT 06:59 2017 Monday ,13 February

Disney parks in US increases prices again

GMT 14:36 2017 Wednesday ,04 January

Record-chasing Chelsea face test

GMT 14:34 2016 Sunday ,14 August

United States wins 1000th Olympic gold medal
Arab Today, arab today
 
 Arab Today Facebook,arab today facebook  Arab Today Twitter,arab today twitter Arab Today Rss,arab today rss  Arab Today Youtube,arab today youtube  Arab Today Youtube,arab today youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©

arabstoday arabstoday arabstoday arabstoday
arabstoday arabstoday arabstoday
arabstoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
arabstoday, Arabstoday, Arabstoday