Friday , March 21 2025

Russia’s Banking System Under Attack; Hacker claimed

A hacker group known as the Cyber Anarchy Squad, supportive of the Ukrainian cause, is believed to have successfully targeted and disrupted Infotel JSC, a critical Russian internet service provider (ISP) that plays a crucial role in facilitating the financial system utilized by Russian banks.

Infotel, based in Moscow, has remained inaccessible since June 8th, and the responsibility for the takedown has been claimed by the hacker collective through their Telegram channel. While writing the report infosecbulletin find infotel jsc website hang a notice  writing on

IBM and Veeam Release Patches in AIX System and Backup

IBM has resolved two critical vulnerabilities in its AIX operating system that could allow command execution. The list of shortcomings,...
Read More
IBM and Veeam Release Patches in AIX System and Backup

WhatsApp patched zero-click flaw exploited in spyware attacks

WhatsApp has patched a zero-click, zero-day vulnerability used to install Paragon's Graphite spyware following reports from security researchers at the...
Read More
WhatsApp patched zero-click flaw exploited in spyware attacks

CVE-2025-24472
CISA Warns of Fortinet FortiOS Auth Bypass Vuln Exploited in Wild

CISA has issued a critical alert about a critical vulnerability in Fortinet’s FortiOS and FortiProxy systems. CVE-2025-24472, an authentication bypass...
Read More
CVE-2025-24472  CISA Warns of Fortinet FortiOS Auth Bypass Vuln Exploited in Wild

11 state hackers exploit new Windows zero-day since 2017

11 nation-state groups from North Korea, China, and Russia are exploiting a vulnerability in a common feature of Microsoft Windows....
Read More
11 state hackers exploit new Windows zero-day since 2017

Hackers Exploit ChatGPT with CVE-2024-27564

Attackers are actively targeting OpenAI, exploiting CVE-2024-27564, a Server-Side Request Forgery (SSRF) vulnerability in OpenAI’s ChatGPT infrastructure. Veriti’s latest research...
Read More
Hackers Exploit ChatGPT with CVE-2024-27564

(CVE-2024-540385)
CVSS 10 Alert! HPE Cray Vulnerability Authentication Bypass Threat

A critical vulnerability, CVE-2024-540385, has been found in HPE Cray XD670 servers using the AMI BMC Redfish API, allowing remote...
Read More
(CVE-2024-540385)  CVSS 10 Alert! HPE Cray Vulnerability Authentication Bypass Threat

CVE-2025-24813
Apache Tomcat Flaw Exploited In The Wild

CVE-2025-24813, a critical remote code execution vulnerability, is actively exploited, enabling attackers to control vulnerable Apache Tomcat servers with a...
Read More
CVE-2025-24813  Apache Tomcat Flaw Exploited In The Wild

B1nary_Band1ts secure first for “MIST CyberTron 2025”

MIST Cyber Security Club hosted an exciting MIST CyberTron 2025, featuring a CTF competition, hacking sessions, live demonstrations, and real-world...
Read More
B1nary_Band1ts secure first for “MIST CyberTron 2025”

CVE-2025-24016
Critical RCE vulnerability affects Wazuh

Cybersecurity researchers unveil a critical remote code execution vulnerability (CVE-2025-24016) in Wazuh, a popular open-source SIEM platform. The vulnerability has...
Read More
CVE-2025-24016  Critical RCE vulnerability affects Wazuh

AWS SNS misused for Data Exfiltration and Phishing

A recent report from Elastic reveals that threat actors misuse Amazon Web Services (AWS) Simple Notification Service (SNS) for malicious...
Read More
AWS SNS misused for Data Exfiltration and Phishing

“Dear partners! We inform you that as a result of a massive hacker attack on the network of Infotel JSC, a part of the network equipment was damaged. Restoration work is currently underway. Additional deadlines for completing the work will be announced.” We hope for your understanding and further cooperation.”

snapshot from infotel.ru

They boasted about the complete destruction of Infotel’s infrastructure, leaving nothing operational. The attackers expressed their confidence in hindering any attempts by Russia to rebuild, comparing their chances to the likelihood of Russia having an easy life.

ALSO READ:

Hack-A-Sat: The First Live Hacking Competition in Space

Although the takedown of a single ISP may not appear monumental, the consequences of this attack could potentially have severe implications for Russia’s banking system. Infotel operates the Automated System of Electronic Interaction (ASEI) on behalf of the Central Bank of Russia.

ASEI is an essential platform used by commercial banks, credit unions, and other businesses for secure communication between organizations. It facilitates secure document exchange, data transfer, digital signatures, and other critical activities that support the functioning of the banking system.

In theory, the absence of ASEI severely restricts institutions’ ability to exchange financial information concerning loans and transactions. While backup systems might provide assistance during downtime, delays would be inevitable.

Given that banks heavily rely on ASEI for processing transactions, a sudden shutdown would disrupt interbank communications and impede the execution of certain transactions.

The hacktivists claimed to have stolen Infotel’s data prior to incapacitating the ISP. It was revealed that AESI serves 400 customers in Russia, with commercial banks accounting for 25% of the total, while credit institutions, car dealerships, connection providers, and other entities make up the remainder.

Check Also

AWS SNS

AWS SNS misused for Data Exfiltration and Phishing

A recent report from Elastic reveals that threat actors misuse Amazon Web Services (AWS) Simple …

Leave a Reply

Your email address will not be published. Required fields are marked *