October 9, 2026

Capitalizations Index – B ∞/21M

McAfee Suspects North Korea In Recent Cyberattack On Turkish Financial Sector

Mcafee suspects north korea in recent cyberattack on turkish financial sector

McAfee Suspects North Korea In Recent Cyberattack On Turkish Financial Sector

Mcafee suspects north korea in recent cyberattack on turkish financial sector

North Korean hackers are suspected in a cyberattack on Turkey’s financial sector, as stated in a report released by McAfee March 8.

The McAfee Advanced Threat Research team identified an attempt by the hacking group Hidden Cobra to breach the security of Turkish government-backed financial institutions on March 2 and 3.

While McAfee policy is to not officially identify cyber groups from nation-states as culprits, they mention in the report that the code of the malware in question closely resembles code used by a hacking operative associated with North Korea.

The hackers used modified malware known as a “Bankshot” which utilized a recently revealed vulnerability in Adobe Flash. The attackers tried to lure their victims with spear-phishing emails containing an infected Microsoft Word file named Agreement.docx.

The file appeared to be an agreement template for Bitcoin distribution between an unknown individual in Paris and a to-be-determined cryptocurrency exchange, the report says.

Bankshot implants were distributed from a domain similar to the cryptocurrency-lending platform Falcon Coin, but the malicious domain falcancoin.io was created December 27, 2017, and is not legally associated with the original platform.

Though there have been no reports of stolen money in the attacks, the research team believes the campaign intended to get remote access to the internal systems of the targeted government-controlled financial organizations. The report, however, does not reveal which specific organizations were affected.

The McAfee team also discovered two documents written in Korean, which appear to be part of the same hacking campaign, but were intended for different targets.

Back in December 2017, the US government issued a warning about Bankshot malware, linking it to Hidden Cobra, a group of hackers the U.S. Government considers malicious cyber-criminals working for the North Korean government.

North Korea has been repeatedly accused of hacking South Korean cryptocurrency exchanges, as international sanctions against the country have tightened over the past year.

Published at Fri, 09 Mar 2018 00:30:41 +0000

bitcoin Scams

Previous Article

Forget Air Miles, This Credit Card Firm to Give Customers Cryptocurrency

Next Article

TokenSoft tokenization platform now offered in over 50 countries

You might be interested in …

日本将解除福岛县大部分地区避难指令 着手重建

日本将解除福岛县大部分地区避难指令 着手重建

日本将解除福岛县大部分地区避难指令 着手重建 中新网3月31日电 据日媒报道,东京电力公司福岛第一核电站发生事故后,日本政府面向福岛县内发布的疏散避难指令将从本月31日起两天内全部被解除,但不包括核电站所在的地区和返乡困难的地区。 据报道,在面向福岛县内发布的疏散避难指令中,日本政府当地时间31日凌晨零时,解除了针对川俣町、浪江町和饭馆村一部分地区发出的疏散避难指令。此后,将于4月1日凌晨零时也解除对富冈町一部分地区发出的疏散避难指令。 资料图:福岛灾区 至此,在日本政府向福岛县内11个市町村发出的疏散避难指令中,除福岛第一核电站所在的双叶町和大熊町的全部区域以及原则上禁止进入的返乡困难地区外,所有疏散避难指令都将被解除。 日本内阁官房长官菅义伟30日在记者会上说:“疏散避难指令覆盖的人口人数和地区面积已经比最初发布指令时大约减少了70%。当地面向复兴重建将迈出新的一步。” 据悉,日本政府今后将在解除疏散避难指令的地区,完善煤气和电力等基础设施的建设,并吸引企业向当地进行投资,以期积极创造就业岗位。 (Why?) Published at Fri, 31 Mar 2017 06:06:57 +0000 [wpr5_ebay kw=”bitcoin” num=”1″ ebcat=”” cid=”5338043562″ lang=”en-US” country=”0″ sort=”bestmatch”]Bezit een fractie van een bitcoin, zijn er nog 20.999.999,998 […]