Uganda confirms cyberattack on central bank but minimizes extent of breach

Avatar

Ugandan officials confirmed on Thursday that the country’s central bank system was hacked by financially-motivated cybercriminals .

The statement from Uganda’s Minister of State for Finance, Henry Musasizi, followed several media reports claiming that a Southeast Asian hacker group breached the Bank of Uganda’s accounts and stole as much as $17 million.

Musasizi acknowledged that the Bank of Uganda had suffered a cyber incident, which likely occurred two weeks ago, but he did not confirm the reported amount of stolen funds.

“It is true that our account was hacked, but not to the extent of what is being reported,” Musasizi told parliament, urging lawmakers to be patient and wait for the completion of the audit and investigation “to avoid misrepresentation of facts.” According to Musasizi, a report on the incident is expected to be ready in about a month.

Uganda’s Daily Monitor newspaper earlier reported that the hackers deposited stolen funds into accounts in Japan and the U.K. British authorities have allegedly frozen about $7 million, although some of the money had already been withdrawn. 

Several Ugandan officials expressed concerns about the cyberattack and asked the finance ministry for explanations.

“It’s important that we know what is happening at the Central Bank. If money is being siphoned, whether by hackers or staff of the Bank of Uganda, it should worry all of us,” opposition leader Joel Ssenyonyi told parliament on Thursday.

“Nearly every two months, you hear about a heist at a commercial bank,” Ssenyonyi added, noting that it is even more alarming when the central bank is involved.

CybercrimeGovernmentNewsNews Briefs
Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

No previous article

No new articles

Daryna Antoniuk

is a reporter for Recorded Future News based in Ukraine. She writes about cybersecurity startups, cyberattacks in Eastern Europe and the state of the cyberwar between Ukraine and Russia. She previously was a tech reporter for Forbes Ukraine. Her work has also been published at Sifted, The Kyiv Independent and The Kyiv Post.

 

Total
0
Shares
Previous Post

Italian football club Bologna FC says company data stolen during ransomware attack

Next Post

Ransomware suspect Wazawaka reportedly arrested by Russia

Related Posts

BlackLock Ransomware Exposed After Researchers Exploit Leak Site Vulnerability

In what's an instance of hacking the hackers, threat hunters have managed to infiltrate the online infrastructure associated with a ransomware group called BlackLock, uncovering crucial information about their modus operandi in the process. Resecurity said it identified a security vulnerability in the data leak site (DLS) operated by the e-crime group that made it possible to extract
Avatar
Read More

SparkCat Malware Uses OCR to Extract Crypto Wallet Recovery Phrases from Images

A new malware campaign dubbed SparkCat has leveraged a suit of bogus apps on both Apple's and Google's respective app stores to steal victims' mnemonic phrases associated with cryptocurrency wallets.  The attacks leverage an optical character recognition (OCR) model to exfiltrate select images containing wallet recovery phrases from photo libraries to a command-and-control (C2) server,
Avatar
Read More