Bitcoin Forum
November 08, 2024, 03:48:24 AM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Hackers Take $1 Billion a Year as Banks Blame Clients for Crime  (Read 1282 times)
Astrohacker (OP)
Full Member
***
Offline Offline

Activity: 156
Merit: 102



View Profile WWW
August 05, 2011, 08:36:50 PM
 #1

http://www.bloomberg.com/news/2011-08-04/hackers-take-1-billion-a-year-from-company-accounts-banks-won-t-indemnify.html

Let us all note that the existing banking system is not immune to theft. Bitcoin is no different from dollars in that respect.
FlipPro
Legendary
*
Offline Offline

Activity: 1764
Merit: 1015


View Profile
August 05, 2011, 08:45:32 PM
 #2

“critical shortage of investigators with the knowledge and expertise to analyze the ever increasing amounts of potential digital evidence.”

This is the field to specialize in right here guys  Grin. I think there will be a huge spike in digital forensics in the near future.
indio007
Full Member
***
Offline Offline

Activity: 224
Merit: 100


View Profile
August 05, 2011, 09:15:22 PM
 #3

Thx for the post. I think some people need to have things put in to a more realistic perspective for them.
Jack of Diamonds
Sr. Member
****
Offline Offline

Activity: 252
Merit: 251



View Profile
August 05, 2011, 09:21:35 PM
 #4

Stealing from corporate accounts is free money. It's one of the best underground businesses.

If you withdraw sums below ~$100k per company, your risk of getting caught is pretty much zero, because most countries in the world have next to no police officers working in digital forensics. The sum would also be too small for them to consider investing serious resources in finding you.
 
This is called the 'sweet spot', where it doesn't pay off to fund the working hours, expertise and resources needed to catch the offender.
If you stole $20M per company it would be a whole different story. $1B a year is still very low compared to overall credit fraud for example.

Funding digital forensics also carries a much higher risk than financing homicide investigations, traditional wire fraud or stock market scams.

Many types of online data theft can be masked perfectly if done with a program like Zeus by a non-amateur.
Since there is literally no way of ever knowing who ends up with the data, you are forced to either try following the money by mule withdraws in other countries (usually eastern Europe) or just give up.
Even then you only catch mules and not the thief himself.

1f3gHNoBodYw1LLs3ndY0UanYB1tC0lnsBec4USeYoU9AREaCH34PBeGgAR67fx
indio007
Full Member
***
Offline Offline

Activity: 224
Merit: 100


View Profile
August 06, 2011, 12:42:55 AM
 #5

Just out of curiosity . Would Zeus work if you did the online banking in a secure virtual machine instance while it is on the host PC?
Jack of Diamonds
Sr. Member
****
Offline Offline

Activity: 252
Merit: 251



View Profile
August 06, 2011, 02:41:10 AM
Last edit: August 06, 2011, 02:56:59 AM by Jack of Diamonds
 #6

Just out of curiosity . Would Zeus work if you did the online banking in a secure virtual machine instance while it is on the host PC?

Not if you use a guest account or a restricted acc., it relies on administrator access for a XSRF browser attack. It can also target executable desktop banking clients.
The newer versions are much more advanced & sell for up to 200,000 rubles ($8k US dollars), over twice as much as a year ago.

Those can capture the entire desktop feed (like teamviewer etc.) and when you're logged in after using a one-time PIN, it hooks the mouse API making it freeze & gives attacker time to transfer out all the cash.

If the bank uses double confirmation (additional random one-time PIN sheet to confirm payment), the attack can't be executed. Most banks don't use double confirmation. Credit Suisse, Nordea, Banque de France are some banks that use d.c.
Also if the client gets suspicious and reboots the machine, the attack fails.

If the bank requires phone verification for large (or sudden multiple) transfers, the attack also becomes impossible.

1f3gHNoBodYw1LLs3ndY0UanYB1tC0lnsBec4USeYoU9AREaCH34PBeGgAR67fx
DrKennethNoisewater
Full Member
***
Offline Offline

Activity: 125
Merit: 100



View Profile
August 06, 2011, 02:58:10 AM
 #7

I bank at one of the biggest crony firms, my acct has been jacked 2 times in 6 months and I'm a small fish.

I was talking with my neighbor about going to a smaller credit union down the street and he says he banks there already and has been jack about
2 times in the past 6-8 months as well.

I think the big banks have 0 desire to stop electronic fraud (debit cards, blink chips etc.) because there's to much money being made in the
"prevention" of it. I would also dare venture say the Crony banks own these firms.

It's just like the "War on Drugs" and the "War on Terror."

All a big joke.....................

Blackout
Full Member
***
Offline Offline

Activity: 196
Merit: 100



View Profile WWW
August 06, 2011, 03:05:59 AM
 #8

I think this is such a line of bullsh&^... the banks freeze accounts when you're trying to buy a fridge that is more expensive than you've bought before, but they can't stop or don't check huge transfers...!? It's a load of malarchy and the banks are probably pocketing the exact amount supposedly or doubling it since it's fake money to begin with created by them, then backed by nothing tangible, then backed against fraud with insurance for THEM - not the client or holder of the account - so they stick it to the company or person.. making double or triple profit.

The time of these banks to end is here.


Honest monetary exchange must return.

Plus - this is reported by Bloomburg and I trust Bloomburg as much I trust a fart is not smelly. A fart IS smelly, and Bloomburg IS a fart, and therefore of the stinketh.





http://blackout.com
Insane writings for an Outsane world: http://blackoutsblog.com

Blackout Radio on android or iphone DL TuneIn APP & search for Blackout Radio http://tunein.com/tuner/?StationId=136506

https://secure.btcontilt.com/register.php?referred=Blackout (BTC Poker)
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!