Saturday, January 25, 2025
HomeSecurity NewsLeader of the Carbanak Hacker Group Whole Stole € 1 Billion Bank...

Leader of the Carbanak Hacker Group Whole Stole € 1 Billion Bank Robbery Arrested In Spain

Published on

SIEM as a Service

Follow Us on Google News

The Leader of the Carbanak Hacker group behind € 1 Billion Bank Robbery arrested by law enforcement agencies in Spain. The group targets more than 100 financial institutions worldwide.

The Carbank hacker group is active since 2013 have attempted attacks against various banks, financial institutions, the e-payment gateway with their well-designed malware dubbed Cobalt.

Also Read Kozlovsky from Lurk Hacker Group admits that his group involved in the creation of WannaCry and DNC hack on Demand

Banks targeted by Carbanak Hacker Group

The Hacker attacked banks in more than 40 countries and that results in more than EUR 1 billion loss in the financial industry. “The magnitude of the losses is significant: the Cobalt malware alone allowed criminals to steal up to EUR 10 million per heist” reads the official statement.

Carbank hacker group started activities in late 2013 by launching Anunak malware campaign targetting ATM networks and financial networks around the world.

Later starting 2014 they improved the Anunak malware into a more sophisticated version of the malware dubbed as Carbanak and the same used up to 2016.

After 2016 the Carbanak Hacker Group developer customized malware based on the Cobalt Strike penetration testing tool to the sophisticated wave of attacks.

Carbanak Hacker group
Infographic: Europol

Attacking Methods

In all of their attacks, they use to send a spear phishing email to the bank employes with malicious attachments and once the malware executed they gain access to the Internal banking system remotely and infects servers that control’s ATM.

By infecting the servers that control’s ATM attackers can instruct ATMs to dispense cash at a particular time and organized group members sitting beside the ATM machine to collect cash.

The attackers transfer money from other legitimate accounts to their own bank accounts and then empty’s the account.They also artificially add’s balance into their accounts and then empty’s the same.

This global operation is a significant success for international police cooperation against a top-level cybercriminal organization. The arrest of the key figure in this crime group illustrates that cybercriminals can no longer hide behind perceived international anonymity” says Steven Wilson.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Subaru’s STARLINK Connected Car’s Vulnerability Let Attackers Gain Restricted Access

In a groundbreaking discovery on November 20, 2024, cybersecurity researchers Shubham Shah and a...

Android Kiosk Tablets Vulnerability Let Attackers Control AC & Lights

A security flaw found in Android-based kiosk tablets at luxury hotels has exposed a...

CISA Releases Six ICS Advisories Details Security Issues

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued six Industrial Control Systems (ICS)...

Juniper Routers Exploited via Magic Packet Vulnerability to Deploy Custom Backdoor

A sophisticated cyber campaign dubbed "J-magic" has been discovered targeting enterprise-grade Juniper routers with...

API Security Webinar

Free Webinar - DevSecOps Hacks

By embedding security into your CI/CD workflows, you can shift left, streamline your DevSecOps processes, and release secure applications faster—all while saving time and resources.

In this webinar, join Phani Deepak Akella ( VP of Marketing ) and Karthik Krishnamoorthy (CTO), Indusface as they explores best practices for integrating application security into your CI/CD workflows using tools like Jenkins and Jira.

Discussion points

Automate security scans as part of the CI/CD pipeline.
Get real-time, actionable insights into vulnerabilities.
Prioritize and track fixes directly in Jira, enhancing collaboration.
Reduce risks and costs by addressing vulnerabilities pre-production.

More like this

LegionLoader Abusing Chrome Extensions To Deliver Infostealer Malware

LegionLoader, a C/C++ downloader malware, first seen in 2019, delivers payloads like malicious Chrome...

North Korean Hackers Stolen $2.2 Billion From Crypto Platforms In 2024

Cryptocurrency hacking incidents in 2024 surged 21.07% YoY to $2.2 billion, with 303 breaches...

Deloitte Denies Breach, Claims Only Single System Affected

Ransomware group Brain Cipher claimed to have breached Deloitte UK and threatened to publish...