funsec mailing list archives

World Bank Under Cyber Siege in 'Unprecedented Crisis'


From: "Paul Ferguson" <fergdawgster () gmail com>
Date: Fri, 10 Oct 2008 13:06:13 -0700

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Via FOX News.

[snip]

The World Bank Group's computer network — one of the largest repositories
of sensitive data about the economies of every nation — has been raided
repeatedly by outsiders for more than a year, FOX News has learned.

It is still not known how much information was stolen. But sources inside
the bank confirm that servers in the institution's highly-restricted
treasury unit were deeply penetrated with spy software last April. Invaders
also had full access to the rest of the bank's network for nearly a month
in June and July.

In total, at least six major intrusions — two of them using the same
group of IP addresses originating from China — have been detected at the
World Bank since the summer of 2007, with the most recent breach occurring
just last month.

In a frantic midnight e-mail to colleagues, the bank's senior technology
manager referred to the situation as an "unprecedented crisis." In fact, it
may be the worst security breach ever at a global financial institution.
And it has left bank officials scrambling to try to understand the nature
of the year-long cyber-assault, while also trying to keep the news from
leaking to the public.

[snip]

More:
http://www.foxnews.com/story/0,2933,435681,00.html

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFI77Wtq1pz9mNUZTMRArjOAKCf1BpJr5UZSH7BAztzGbkkB1K5KQCg8NaO
q6C4r0wzTom8frPYtJxJLSg=
=D60M
-----END PGP SIGNATURE-----

-- 
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawgster(at)gmail.com
 ferg's tech blog: http://fergdawg.blogspot.com/

_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: