Current:Home > InvestU.S. arm of China mega-lender ICBC hit by ransomware attack -MarketEdge
U.S. arm of China mega-lender ICBC hit by ransomware attack
View
Date:2025-04-15 02:17:14
The U.S. arm of China's largest bank said Thursday that it was hit by a ransomware attack, forcing clients to reroute trades and disrupting the U.S. Treasury market.
Ransomware attacks typically access vulnerable computer systems and encrypt or steal data, before sending a ransom note demanding payment in exchange for decrypting the data or not releasing it publicly.
The Industrial and Commercial Bank of China Financial Services (ICBC FS) said Thursday it "experienced a ransomware attack that resulted in disruption to certain (financial services) systems."
"Immediately upon discovering the incident, ICBC FS disconnected and isolated impacted systems to contain the incident," the New York-based bank said, adding that it was investigating the attack and working on recovery.
ICBC FS said it had successfully cleared U.S. Treasury trades executed Wednesday and repurchasing (repo) financing trades Thursday.
Bloomberg reported that some trades handled by ICBC FS on Thursday were transported across Manhattan on a USB stick as messengers manually relayed required settlement details.
China's foreign ministry said Friday that "the business systems and office systems of the head office of ICBC and other domestic and foreign branches and subsidiaries within the group are normal."
"As far as we know, ICBC has paid close attention to this matter, and has done a good job in emergency handling and supervision and communication, striving to minimize the impact of risks and losses," foreign ministry spokesman Wang Wenbin said at a regular news briefing. "At present, the business systems and office systems of the head office of ICBC and other domestic and foreign branches and subsidiaries within the group are normal."
U.S. media reported that the hack was executed using software created by Lockbit, the Russian-speaking hacking group known for scrambling files on a host's computer and flashing up messages demanding cryptocurrency payment to resolve the issue.
U.S. aircraft manufacturer Boeing was hit with an attack from Lockbit last week.Last year, LockBit was "the most deployed ransomware variant across the world and continues to be prolific in 2023," according to the U.S. Cybersecurity and Infrastructure Security Agency.
The U.S. Justice Department said in May that LockBit ransomware had been used in more than 1,400 attacks globally. LockBit has targeted critical infrastructure and large industrial groups, with ransom demands ranging from EUR5 million to EUR70 million.
The group attacked Britain's Royal Mail in early January and a Canadian children's hospital in December.
veryGood! (4)
Related
- The White House is cracking down on overdraft fees
- Subway train derails in Massachusetts and injures some riders
- Price gouging, fraud, ID theft: Feds say scammers set sights on Hurricane Helene victims
- The 'girl dinner,' 'I'm just a girl' memes were fun, but has their moment passed?
- From family road trips to travel woes: Americans are navigating skyrocketing holiday costs
- These Are the Biggest Boot Trends You’ll See This Fall 2024
- Killer Whales in Chile Have Begun Preying on Dolphins. What Does It Mean?
- MLB postseason highlights: Padres, Mets secure big wins in Game 1 of wild-card series
- Paula Abdul settles lawsuit with former 'So You Think You Can Dance' co
- Miracles in the mud: Heroes, helping hands emerge from Hurricane Helene aftermath
Ranking
- Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
- MLB postseason highlights: Padres, Mets secure big wins in Game 1 of wild-card series
- John Amos’ Daughter Shannon Shares She Learned Dad Died 45 Days Later Amid Family Feud
- How Climate Change Intensified Helene and the Appalachian Floods
- Kylie Jenner Shows Off Sweet Notes From Nieces Dream Kardashian & Chicago West
- California lawmakers advance bill to prevent gas prices from spiking
- Dockworkers join other unions in trying to fend off automation, or minimize the impact
- Second fan files lawsuit claiming ownership of Shohei Ohtani’s 50-50 baseball
Recommendation
Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
Mariska Hargitay Addresses Potential Taylor Swift Cameo on Law & Order: SVU
Maryland approves settlement in state police discrimination case
Sean 'Diddy' Combs faces 120 more sexual abuse claims, including 25 victims who were minors
Working Well: When holidays present rude customers, taking breaks and the high road preserve peace
Five Chinese nationals charged with covering up midnight visit to Michigan military site
Sean “Diddy” Combs Accused of Abusing Minors Amid New Allegations
Why Jason Kelce Is Jokingly Calling Out Taylor Swift Fans