Skip to main content
NTv Online

Bangladesh

Bangladesh
  • Accident
  • Crime
  • Environment
  • Government
  • Law
  • More
  • Politics
  • Society
  • Bangla Version
  • Archive
  • Bangladesh
  • World
  • Sports
  • Entertainment
  • Business
  • Comment
  • Education
  • Life
  • Health
  • Art & Culture
  • Election
  • বাংলা
  • Bangladesh
  • World
  • Sports
  • Entertainment
  • Business
  • Comment
  • Education
  • Life
  • Health
  • Art & Culture
  • Election
  • বাংলা
  • Bangla Version
  • Archive
Follow
  • Bangladesh
Reuters
23 April, 2016, 09:44
Update: 23 April, 2016, 09:44
More News
Rab raids Papiya’s city houses, presidential suite at luxury hotel
DU Student Rape: ‘Rapist’ to be produced before court
Suspect arrested over DU student rape
DU student rape: Protesters block Shahbagh, case filed
2 suspects arrested over Chinese man’s murder in Dhaka

No firewall, $10 router blamed in $80m BB hack

Reuters
23 April, 2016, 09:44
Update: 23 April, 2016, 09:44
Better network hardware would have helped police investigate the hack attack, say experts. Photo courtesy: Getty Images

Bangladesh’s central bank was vulnerable to hackers because it did not have a firewall and used second-hand, $10 switches to network computers connected to the SWIFT global payment network, an investigator into one of the world’s biggest cyber heists said.

The shortcomings made it easier for hackers to break into the system earlier this year and attempt to siphon off nearly $1 billion using the bank’s SWIFT credentials, said Mohammad Shah Alam, head of the Forensic Training Institute of the Bangladesh police’s criminal investigation department.

‘It could be difficult to hack if there was a firewall,’ Alam said.

The lack of sophisticated switches, which can cost several hundred dollars or more, also means it is difficult for investigators to figure out what the hackers did and where they might have been based, he added. The institute Alam heads includes a cyber crime division.

The police believe both the bank and SWIFT should take the blame for the oversight, Alam said in an interview.

‘It was their responsibility to point it out but we haven’t found any evidence that they advised before the heist,’ he said, referring to SWIFT.

A spokeswoman for Brussels-based SWIFT declined comment.

SWIFT has previously said the attack was related to an internal operational issue at Bangladesh Bank and that SWIFT’s core messaging services were not compromised.

A spokesman for Bangladesh Bank said SWIFT officials advised the bank to upgrade the switches only when their system engineers from Malaysia visited after the heist.

‘There might have been a deficiency in the system in the SWIFT room,’ said the spokesman, Subhankar Saha, confirming that the switch was old and needed to be upgraded.

‘Two (SWIFT) engineers came and visited the bank after the heist and suggested to upgrade the system,’ Saha said.

Cyber criminals broke into the bank’s systems and tried to make fraudulent transfers totalling $951 million from its account at the Federal Reserve Bank of New York in early February.

Most of the payments were blocked but $81 million was routed to accounts in the Philippines and diverted to casinos there. Most of those funds remain missing.

Another $20 million was sent to a company in Sri Lanka but the transfer was reversed because the hackers misspelled the name of the firm, raising a red flag at the routing bank.

The heist, which sent alarm bells ringing across the global financial system about cyber security, has turned into a global whodunit.

Bangladesh police said earlier this week it has identified 20 foreigners involved in the heist but they appear to be people who received some of the payments rather than those who initially stole the money. There is no clue to the identity of the hackers or who was behind the plot.

Bangladesh Bank has about 5,000 computers used by officials in different departments, Alam said.

The SWIFT room is roughly 12 feet by 8 feet, a window-less office located on the eight floor of the bank’s annex building in Dhaka. There are four servers and four monitors in the room.

All transactions from the previous day are automatically printed on a printer in the room.

The SWIFT facility should have been walled off from the rest of the network. That could have been done if the bank had used the more expensive, ‘managed’ switches, which allow engineers to create separate networks, Alam said.

Moreover, considering the importance of the room, the bank should have deployed staff to monitor activity round the clock, including weekends and holidays, he said.

Communications between the Fed and the Bangladesh central bank were hampered and the heist was discovered only after a delay because it happened between 4 and 5 February, over the Bangladeshi weekend.

Most Read
  1. Mosaddak Ali, two others discharged in money laundering case
  2. Over 1000 people killed, 400 lost eyesight in student movement: Health Adviser
  3. Help Jannat to beat cancer
  4. Mastermind’s finance event to knock the city
  5. Authorities urged to consult on vape ban proposal
  6. No condition for IMF loan to Bangladesh: PM tells Parliament
Most Read
  1. Mosaddak Ali, two others discharged in money laundering case
  2. Over 1000 people killed, 400 lost eyesight in student movement: Health Adviser
  3. Help Jannat to beat cancer
  4. Mastermind’s finance event to knock the city
  5. Authorities urged to consult on vape ban proposal
  6. No condition for IMF loan to Bangladesh: PM tells Parliament

Follow Us

Alhaj Mohammad Mosaddak Ali

Chairman & Managing Director

NTV Online, BSEC Building (Level-8), 102 Kazi Nazrul Islam Avenue, Karwan Bazar, Dhaka-1215 Telephone: +880255012281 up to 5, Fax: +880255012286 up to 7

Browse by Category

  • About NTV
  • NTV Programmes
  • Advertisement
  • Web Mail
  • NTV FTV
  • Satellite Downlink
  • Europe Subscription
  • USA Subscription
  • Privacy Policy
  • Terms & Conditions
  • Contact

Our Newsletter

To stay on top of the ever-changing world of business, subscribe now to our newsletters.

* We hate spam as much as you do

Alhaj Mohammad Mosaddak Ali

Chairman & Managing Director

NTV Online, BSEC Building (Level-8), 102 Kazi Nazrul Islam Avenue, Karwan Bazar, Dhaka-1215 Telephone: +880255012281 up to 5, Fax: +880255012286 up to 7

Reproduction of any content, news or article published on this website is strictly prohibited. All rights reserved