World

LockBit says it got ransom payment from ICBC over hack that hit US Treasury market

Spread the love
China’s biggest lender, the Industrial and Commercial Bank of China, paid a ransom after it was hacked last week, a LockBit ransomware gang representative said on Monday in a statement which Reuters was unable to independently verify.

ICBC, whose US arm was hit by a ransomware attack that disrupted trades in the US Treasury market on November 9, did not immediately respond to a request for comment.

“They paid a ransom, deal closed,” the LockBit representative said via Tox, an online messaging app.

The blackout at ICBC’s US broker-dealer left it temporarily owing BNY Mellon US$9 billion, an amount many times larger than its net capital.

The hack was so extensive that even corporate email at the firm ceased to function, forcing employees to switch to Google mail.

“The market is mostly back to normal now,” said Zhiwei Ren, a portfolio manager at Penn Mutual Asset Management.

ICBC US unit gets funds to pay US$9 billion for trades after ransomware attack

The ransomware attack came at a time of heightened worries about the resiliency of the US$26 trillion Treasury market, essential to the plumbing of global finance, and is likely to draw scrutiny from regulators.

A spokesperson for the US Treasury Department did not immediately provide comment on Monday.

The Financial Services Information Sharing and Analysis Centre, a financial industry cybersecurity group, said financial firms have well-established protocols for sharing information on such incidents.

“We are reminding members to stay current on all protective measures and patch critical vulnerabilities immediately,” a spokesperson said in a statement, adding: “Ransomware remains one of the top threat vectors facing the financial sector.”

LockBit has hacked some of the world’s largest organisations in recent months, stealing and leaking sensitive data in cases where victims refused to pay ransom. In just three years, it has become the world’s top ransomware threat, according to US officials.

Nowhere has it been more disruptive than in the United States, hitting more than 1,700 American organisations in nearly every sector from financial services and food to schools, transport and government departments.

Notorious ransomware gang accused of attack on UK’s Royal Mail

Authorities have long advised against paying ransomware gangs in a bid to break the criminals’ business model. Ransom is usually demanded in the form of cryptocurrency, which is harder to trace and gives the receiver anonymity.

Some companies have quietly paid up in a bid to get back online quickly and avoid the reputational damage of having their sensitive data publicly leaked. Victims who do not have digital backups that allow them to restore their systems without the need of a decryption key sometimes have no choice but to pay.

Last week, LockBit hackers published internal data from aerospace giant Boeing and said on their website they had infected computer systems at law firm Allen & Overy.

EMEA Tribune is not involved in this news article, it is taken from our partners and or from the News Agencies. Copyright and Credit go to the News Agencies, email [email protected] Follow our WhatsApp verified Channel210520-twitter-verified-cs-70cdee.jpg (1500×750)

Support Independent Journalism with a donation (Paypal, BTC, USDT, ETH)
Avatar

News Agencies

About Author

The latest news from the News Agencies

You may also like

Saudi Arabia imposes curfew
World

Saudi Arabia imposes curfew due to coronavirus in Makkah and Madina

Spread the loveSaudi Arabia’s government has decided to impose a 24-hour curfew in Makkah and Madina while tightening precautionary measures
saudi royal family
World

Dozens of Saudi royal family infected with coronavirus: report

Spread the loveRiyadh: 150 members of the Saudi royal family have been diagnosed with Coronavirus.   According to a US