Get all your news in one place.
100’s of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

Chinese banking giant's London HQ targeted by cybercriminals, threatening to leak millions of files

Security.

The London branch of the Industrial and Commercial Bank of China (ICBC) has suffered a ransomware attack that saw the hackers make off with plenty of sensitive data.

A report from The Register, citing an announcement posted on the threat actor’s data leak site, says ICBC has until September 13 to pay the ransom demand or witness its data leaking.

The ransomware attack on ICBC's London branch was carried out by a group known as Hunters International, who claim to have stolen 5.2 million files - equivalent to 6.6 TB of sensitive data.

ICBC ransomware attack

For those with shorter memory, Hunters International might sound like a relatively new entrant in the game of ransomware. However, some experts claim it is actually a rebrand of the infamous Hive ransomware, which was one of the largest and most dangerous groups of its tim, until it was dismantled by the FBI in July 2022, when the law enforcement successfully infiltrated the collective and obtained decryption keys.

Hunters International emerged roughly a year ago, as a threat actor that focuses more on data exfiltration, and less on system encryption. Some researchers argue that building, maintaining, and deploying encryptors is too cumbersome, and that simply stealing files is as lucrative.

ICBC is the largest bank in the world by total assets and market capitalization. It is owned by the Chinese state and is a key player in the country’s financial system. The bank provides a wide range of services such as corporate and personal banking, wealth management, and investment banking. ICBC has a vast global presence with branches and subsidiaries in major financial centers around the world. As such, it plays a major role in financing infrastructure projects both within China and internationally.

So far, the bank has not yet responded to any requests for comment, nor has it said anything about the incident.

Via The Register

More from TechRadar Pro

Sign up to read this article
Read news from 100’s of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.