Amount can be informed by the Federal Police “if she understands that it is important,” according to BC president
The president of (Central Bank), Gabriel Galipolo, silenced on Wednesday (9.Jul.2025) about what is the amount diverted by the hacker invasion of the service company. Stated that the data can be informed by the Federal Police, “ [a corporação] understand that it is important ”.
He that the attack was not a blow to “Digital structureSystems protection. He stated that a person had access to passwords and credentials that allowed fragility in the financial system.
“What happened was an invasion, an access to an institution account”he said. He stated that the Central Bank is available to discuss the “Regulatory Perimeter” to expand the safety of the financial sector.
The president of the BC participates in this Wednesday (9.Jul.2025) of public hearing at the House Finance and Taxation Commission. This is the presentation (PDF – 2 MB).
Watch (3h28min):
According to Galipolo, the criminal got a “legitimate access”To the system by having the password and credentials, which allowed the redemption of money from the reserve account, which is maintained by financial institutions with the BC to settle operations in the SPB (Brazilian payment system). The account records the entry and exit of resources authorized to operate. Accounts are fundamental to operate PIX, bank transfers (TEDs) and other operations.
“It is not a traditional cyber attack, in the sense that there was no brute force attack, with several attempts to corrupt password, because it depended on what we call social engineering. Someone gave access to credentials and verifications that were legitimate.”said Galipole.
The president of the Central Bank stated that BC systems are righteous. He said he cannot give more details not to disturb the investigations of the Federal Police.
The attack
PF and BC a hacker attack on C&M Software, a technology service provider that, according to the Poder360diverted R $ 800 million of 8 financial institutions.
The Civil Police on Thursday (3.Jul.2025) João Nazareno Roque, suspected he was a company employee and would have contributed to the security breach that allowed the diversion of R $ 800 million of 8 financial institutions. It would be paid to facilitate the invasion.