Get the latest tech news

In search of riches, hackers plant 4G-enabled Raspberry Pi in bank network


Sophisticated group also used novel means to disguise their custom malware.

The researchers with security firm Group-IB said the “unprecedented tactic allowed the attackers to bypass perimeter defenses entirely.” The hackers combined the physical intrusion with remote access malware that used another novel technique to conceal itself, even from sophisticated forensic tools. The goal was to compromise the ATM switching server and use that control to manipulate the bank’s hardware security module, a tamper-resistant physical device used to store secrets such as credentials and digital signatures and run encryption and decryption functions. As Group-IB was initially investigating the bank’s network, researchers noticed some unusual behaviors on the monitoring server, including an outbound beaconing signal every 10 minutes and repeated connection attempts to an unknown device.

Get the Android app

Or read this on ArsTechnica

Read more on:

Photo of Hackers

Hackers

Photo of Search

Search

Photo of Raspberry Pi

Raspberry Pi

Related news:

News photo

Hackers target Python devs in phishing attacks using fake PyPI site

News photo

Hackers stole Social Security numbers during Allianz Life cyberattack

News photo

Hackers actively exploit critical RCE in WordPress Alone theme