US SEC said to be probing corporate hacks by FIN4 group

Group sends sophisticated phishing emails to gain information about mergers and acquisitions

The U.S. Securities and Exchange Commission is concerned that data stolen from companies in cyberattacks is being used to conduct what effectively is insider trading, Reuters reported on Tuesday.

The securities regulator has asked at least eight publically traded companies for information on data breaches, the report said quoting "people familiar with the matter." The companies were not identified.

The investigation, which is being conducted in parallel with one by the U.S. Secret Service, said Reuters, involves a group dubbed FIN4 by computer security company FireEye.

FIN4 has been in operation since mid-2013 and has targeted more than 100 traded companies and advisory firms with highly targeted and sophisticated spear phishing attacks, FireEye said in a 2014 report. Most of the companies are in the healthcare and pharmaceutical industries, and the targets of the hacking attempts are individuals who regularly communicate about potentially market-moving information that is private, said FireEye.

The group will attempt to obtain documents related to ongoing discussions of mergers and acquisitions involving major companies, then add malware to the documents and send them on to top executives, furthering its reach inside an organization.

"On multiple occasions, FIN4 has targeted several parties involved in a single business deal, to include law firms, consultants, and the public companies involved in negotiations," the report said.

FireEye didn't guess the identity of the group but noted the emails appear to be written by native speakers of English.

The mass of information potentially available to hackers was demonstrated last December when emails from Sony Pictures Entertainment were published on the Internet. The emails contained confidential details of negotiations with traded and private companies, copies of contracts, inside information on the motion picture industry and gossip about what was happening in Hollywood.

Martyn Williams covers mobile telecoms, Silicon Valley and general technology breaking news for The IDG News Service. Follow Martyn on Twitter at @martyn_williams. Martyn's e-mail address is martyn_williams@idg.com

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags U.S. Securities and Exchange Commissionregulationsecuritydata breachFireEyegovernment

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Martyn Williams

IDG News Service
Show Comments

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Sarah Ieroianni

Brother QL-820NWB Professional Label Printer

The print quality also does not disappoint, it’s clear, bold, doesn’t smudge and the text is perfectly sized.

Ratchada Dunn

Sharp PN-40TC1 Huddle Board

The Huddle Board’s built in program; Sharp Touch Viewing software allows us to easily manipulate and edit our documents (jpegs and PDFs) all at the same time on the dashboard.

George Khoury

Sharp PN-40TC1 Huddle Board

The biggest perks for me would be that it comes with easy to use and comprehensive programs that make the collaboration process a whole lot more intuitive and organic

David Coyle

Brother PocketJet PJ-773 A4 Portable Thermal Printer

I rate the printer as a 5 out of 5 stars as it has been able to fit seamlessly into my busy and mobile lifestyle.

Kurt Hegetschweiler

Brother PocketJet PJ-773 A4 Portable Thermal Printer

It’s perfect for mobile workers. Just take it out — it’s small enough to sit anywhere — turn it on, load a sheet of paper, and start printing.

Matthew Stivala

HP OfficeJet 250 Mobile Printer

The HP OfficeJet 250 Mobile Printer is a great device that fits perfectly into my fast paced and mobile lifestyle. My first impression of the printer itself was how incredibly compact and sleek the device was.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?