Results 1 to 5 of 5

Thread: How Citigroup hackers broke in 'through the front door' using bank's website(DailyM)

  1. #1
    Drew Wilson's Avatar

    AKA IceCube

    Join Date
    Dec 2007
    Location
    Igloo Country?
    Posts
    9,655

    How Citigroup hackers broke in 'through the front door' using bank's website(DailyM)

    Hackers who stole the personal details of more than 200,000 Citigroup customers 'broke in through the front door' using an extremely simple technique.

    It has been called 'one of the most brazen bank hacking attacks' in recent years.

    And for the first time it has been revealed how the sophisticated cyber criminals made off with the staggering bounty of names, account numbers, email addresses and transaction histories.

    They simply logged on to the part of the group's site reserved for credit card customers - and substituted their account numbers which appeared in the browser's address bar with other numbers.

    It allowed them to leapfrog into the accounts of other customers - with an automatic computer programme letting them repeat the trick tens of thousands of times.

    More...

    That is really really really sad.

  2. #2
    mountain_rage's Avatar

    Zeropaids nipple

    Join Date
    Mar 2004
    Location
    purgatory
    Posts
    7,069
    You gotta be fucking shitting me, that is what they pass off as security? That is the level of security zeropaid has for member pictures. I would not even consider that hacking, and if they ever get caught, I hope their lawyer fights it that way.

    One expert, who is part of the investigation and wants to remain anonymous because the inquiry is at an early stage, told The New York Times he wondered how the hackers could have known to breach security by focusing on the vulnerability in the browser.
    He said: 'It would have been hard to prepare for this type of vulnerability.'
    It is not known how much the incident is going to cost Citigroup and its customers.
    Can you hear the sound of my palm hitting my face?
    Anyone upset or offended by my post please follow the link and let your opinions be known.
    http://www.zeropaid.com/bbs/showthread.php?t=55492

  3. #3
    Drew Wilson's Avatar

    AKA IceCube

    Join Date
    Dec 2007
    Location
    Igloo Country?
    Posts
    9,655
    This kind of low level security seriously needs to stop. So I did a 2000 word rant about this and other hacking saying that being lax about security in big institutions shouldn't be happening.

  4. #4
    Aaron_Walkhouse's Avatar

    The Legendary Axeman

    Join Date
    Jan 2009
    Location
    My igloos melt in June
    Posts
    608
    The problem with big organizations is that responsibility is always with "someone else".
    The best outfits have one boss and only enough managers to sit at his breakfast table.
    Try ducking responsibility when you face everybody who's in charge every morning.

  5. #5
    Aaron_Walkhouse's Avatar

    The Legendary Axeman

    Join Date
    Jan 2009
    Location
    My igloos melt in June
    Posts
    608
    And, by the way, figuring this one out was as easy as glancing at the address bar
    while using the site and seeing your credit card number is being transmitted in the
    clear as part of the URL.
    That stupidity would provoke anyone to expose the security hole in very public ways.

Similar Threads

  1. White Supremecists Now Going Door-to-Door (WZVN)
    By Drew Wilson in forum The Lounge
    Replies: 3
    Last Post: March 16th, 2011, 09:07 AM
  2. Evanescence The Open Door 2006
    By shawners in forum Music
    Replies: 6
    Last Post: September 20th, 2006, 07:36 PM
  3. Smoker tried to open airliner door
    By Jared Moya in forum The Lounge
    Replies: 11
    Last Post: November 21st, 2005, 02:46 PM
  4. Music label widens door to Net
    By Sockfulloflove in forum News
    Replies: 0
    Last Post: November 13th, 2002, 10:38 PM
  5. Winamp bug opens the door for mp3 virii
    By mrgone4662 in forum News
    Replies: 14
    Last Post: May 31st, 2002, 10:19 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •