CrowdStrike published a detailed threat intelligence report exposing a sophisticated state-sponsored hacking campaign codenamed "PHANTOM LEDGER" that targeted 47 major financial institutions across 18 countries, successfully exfiltrating an estimated $1.7 billion and compromising data belonging to over 23 million individuals.
Attack Methodology
Attackers first compromised a niche financial messaging software vendor used by all 47 targeted banks, inserting malicious code into a routine software update. AI-generated spear-phishing emails achieved a 34% click-through rate — roughly four times the industry average.
Response
Affected banks have been notified and the FBI, Interpol and Europol have launched a coordinated investigation.
Comments (1)
Leave a comment
First time commenting here. Found this via social media. Incredible journalism — going to read more from this author.
This is the kind of long-form investigative journalism that the internet was supposed to kill, and yet here it is thriving. Bookmarked and shared.
I'm not sure the framing here is entirely fair. The headline implies certainty that the body text doesn't quite deliver on. Worth being careful about that gap.
I was directly affected by this and the article captures the situation accurately. Reading this brought back a lot of difficult memories but I'm glad the story is being told.
Good journalism. Rare these days. Thank you.