HomeSecurityCentral Bank of Indonesia: Victim of Conti ransomware?

Central Bank of Indonesia: Victim of Conti ransomware?

Bank Indonesia (BI), Indonesia's central bank, confirmed that a ransomware attack hit its networks last month.

According to CNN Indonesia, the breach allowed the theft of some “non-critical data” belonging to Bank Indonesia employees. Following the theft, ransomware payloads to over a dozen systems on the bank’s network.

See also: ProtonMail: Introduces new system to block email trackers

Central Bank of Indonesia

However, according to a bank spokesperson, the incident was addressed before it affected BI's public services.

"We were attacked, but we took immediate action and so public services at Bank Indonesia were not disrupted at all," said BI's head of communications, Erwin Haryono.

“BI is aware of a ransomware attack that took place last month. We know that we have been hit by a cyber attack. This is a crime, it is real and we are exposed to it,” Haryono added according to local media.

See also: FBI: Links Diavol ransomware to TrickBot developers

Conti ransomware behind the bank attack?

Haryono did not provide details about the ransomware attack that hit Indonesia's central bank. He did not say, for example, who was behind the attack. However, the well-known ransomware gang, Conti, has claimed responsibility for the attack, after it appeared to leak some files allegedly stolen from Bank Indonesia's network.

Conti ransomware Bank Indonesia

The hackers claim to be in possession of 13.88 GB of documents, which will be leaked if Bank Indonesia does not pay the ransom.

Conti ransomware

Conti is a Ransomware-as-a-Service (RaaS) operation believed to be linked to the Russian cybercrime group, Wizard Spider. The group has also been linked to other malware, including Ryuk, TrickBot, and BazarLoader.

After gaining access to the victim's internal network, the operators of Conti ransomware compromise other devices as they spread within the network.

See also: Shutterfly services disrupted by Conti ransomware

First, they collect and steal data and then deploy ransomware payloads across the network.

The Conti gang has attacked high-profile companies and organizations, such as the Irish Department of Health (DoH) and RR Donnelly (RRD).

The US FBI, CISA and NSA are warning organizations about the increased attacks.

Source: Bleeping Computer

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr/politiki-syntaxis/
Member of the SecNews Editorial Team. Covers software vulnerabilities, data breaches, cyberattacks and technology developments. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS