Hackers plant 4G Raspberry Pi on bank network in failed ATM heist

In a recently uncovered attack, the UNC2891 hacking gang, also known as LightBasin, circumvented security measures by using a 4G-enabled Raspberry Pi concealed within a bank’s network.

The attackers were able to travel laterally and install backdoors because the single-board computer was physically attached to the ATM network switch, establishing an unseen path into the bank’s internal network.

Group-IB, who found the intrusion while looking into questionable network activity, said that the attack’s objective was to impersonate ATM authorization and carry out fraudulent cash withdrawals.

The incident is a unique instance of a sophisticated hybrid (physical+remote access) attack that used many anti-forensics approaches to preserve a high degree of stealthiness, even though LightBasin failed at that.

As Mandiant noted in a 2022 report introducing the then-new Unix kernel rootkit “Caketap,” designed to run on Oracle Solaris systems utilized in the financial industry read more about Hackers plant 4G Raspberry Pi on bank network in failed ATM heist.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *