UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for Fraud
02.08.2025
2226

UNC2891 used a 4G Raspberry Pi and Linux rootkits to breach ATM networks, exposing flaws in banking infrastructure.
In a bold move that sounds straight out of a cyberpunk novel, UNC2891 has been caught red-handed breaching ATM networks using nothing but a 4G-enabled Raspberry Pi. This isn't your grandma's tech hobby—it's a full-blown cyber heist attempt, complete with the deployment of the CAKETAP rootkit aimed at financial fraud.
The breach highlights glaring vulnerabilities in banking infrastructure, proving once again that when it comes to security, the financial sector might just be playing catch-up. The attackers didn't just stop at physical access; they went full digital, leveraging Linux rootkits to sneak past defenses.

Group-IB, the cybersecurity firm that uncovered the plot, has been sounding the alarm on UNC2891's activities. Their findings suggest this isn't a one-off but part of a larger, more sinister campaign targeting financial institutions worldwide.
- • The attack utilized a Raspberry Pi connected via 4G to bypass traditional network defenses.
- • CAKETAP rootkit was deployed to maintain persistence and evade detection.
- • This incident exposes critical vulnerabilities in ATM and banking network security.
So, what's the takeaway? If a device as innocuous as a Raspberry Pi can be weaponized to breach ATM networks, it's high time for a security overhaul in the banking sector. The line between digital and physical security is blurrier than ever, and the bad actors are already crossing it.
#hack#malware#cybersecurity#ATM fraud#Linux rootkits
Got a topic? Write to ATLA WIRE on Telegram:t.me/atla_community

