HZFN.COM
welcome to my space
X
Search:  
Welcome to:hzfn.com
NAVIGATION - HOME
SA's Internet Banking "Full of Holes"
Published by: jack 2009-01-07
[Johannesburg, SOUTH AFRICA] At least three of South Africa's financial institutions have gaping holes in their "secure" Internet security systems, exposing valuable information to hackers who could infiltrate and corrupt these systems.

Effective Credit Card Debt Consolidation Strategies & Eliminate ::
You see, there’s a lot more to Credit Card debt than just the never-ending payments…debt . It was just like pouring water into a bucket full of holes!
http://www.geniewealthmaker.com/
HOME
Reacting to a tip-off from an industry source, sa.internet.com researched the claim and found that the source codes from three apparently secure servers could be accessed and administrator ID's and passwords obtained.

According to an expert in Internet security, at least one of these source codes allows "significant" access to customer details. This expert informed sa.internet.com on Thursday that the code provides administrator access through to the customer database on the Web site of one of South Africa's financial institutions. This would potentially allow a hacker to change seemingly-secure customer details.

One of South Africa's four major banks also appears to be at risk, according to the source, although in this case, the expert was only able to verify that read-access to the database could be obtained. "Should the server be compromised," he commented, "this window will allow a hacker to view the customer database, obtaining PIN numbers and account details."

IP Menu - Latest Intellectual Property Resources News - September ::
Furthermore, we assume an important part and role in internet law, . means that when you get a status report from PAMS/PatSearch it is full of holes!
http://www.ipmenu.com/archive/September2004toOctober2004.htm
HOME
No More of the McSame!::
We found that not only is this theory full of holes, it’s not even McCain’s .. That’s a perfectly sensible spin — when a politician holds one position,
http://nomoreofthemcsame.com/
HOME
In the third instance, while the source code was obtained, a number of firewalls prevented access to the database of customer information but still provided insight into the site architecture. "In all three cases the extent of the information obtained varied," the security expert explained, "ranging from providing information on how the site works to exposing customer information that clients expect to be securely guarded on the server."

When sa.internet.com spoke to First National Bank, a spokesman suggested that this kind of security risk would not apply to their operation. According to this spokesman, customers who access the online banking option are immediately rerouted to a secure server on another site, the main FNB site being merely a brochure-type information resource. What the spokesman did confirm, however, is that should the FNB brochure Web site be susceptible to this intrusion, this opens the way for a hacker to change information and deface the site. While this is not crippling in itself, he commented, a bank will face adverse publicity and could incur significant downtime costs.

Computer-Related Infrastructure Risks for Federal Agencies::
We also need better Internet protocols; the existing protocols are .. Financial losses: Largest computer error in US banking history: $763.9 billion.
http://www.csl.sri.com/~neumann/senate98.html
HOME
Predictable Surprises: The Disasters You Should Have Seen Coming::
File Format: PDF/Adobe Acrobaternment of South Africa over its attempt to reduce the .. U.S. aviation security system was full of holes. Anyone who flew
http://www.murrayins.com/rms/HO5-HBRMarch2003.pdf
HOME
When sa.internet.com alerted NBS to the problem, NBS Internet and e-commerce Manager Lambert van Heerden consulted with the Internet services team before concluding that there is no risk to the bank's clients of their information being compromised. The UserID and password which can be obtained through the source code, he assured us, only allows general access to a table within the SQL database.

According to van Heerden, to obtain access to the SQL server itself and get further source codes or information would necessitate a hacker bypassing two additional firewalls and having the relevant passwords. NBS Media Liason Kim Baas did, however, confirm that the bank would be implementing the security patch that is available from Microsoft, but are currently testing the system to ensure that the patch is compatible.

The patch to which Baas refers aims to eliminate two security vulnerabilities on Microsoft's Internet Information Server, a technology employed by most South African financial institutions. Microsoft say that these vulnerabilities could allow a malicious user to stop the Web site from providing useful service and also allow access to certain types of apparently secure information.

At the very least, these security vulnerabilities are testament to the fact that affected institutions need to radically revise their stance on the importance of information security. This is especially so in light of the availability of this patch and the fact that a malicious user can obtain limited access to information that should be, and can be, secured.

South Africa's financial institutions have the most to gain from assuring customers of the sanctity of their security systems - access to any protected information should be a matter of utmost priority, no matter how seemingly trivial this information might appear. As e-commerce vendors look to financial institutions for guidance in implementing their own security measures, these security systems should present the image of unassailable fortress-like architecture. In South Africa this does not appear to be the case.




MedioStream Intros DV-To-MPEG2 Software Transcoder
Siebel Goes Wireless with Nokia

  • where did the girls from 039 the hills 039 go to study fashion
  • i need help with this geometry problem how many radians does the minute hand of a clock rotate in 50 minutes
  • did my maltese have a miscarriage
  • abusive bf only 16 any advice
  • boyfriends 18th birthday what should i get him
  • does anyone have any handbag suggestion for this winter
  • dresses for my friend 039 s party
  • test for divergence sum n n 2 and sum n 4 n 2 n for n starting at n 1 to plus infinity thanks
  • what 039 s on the used yellow shirt
  • i think im in love help me out
  • i want a pair of ugg boots and im a 9 10 the ones i want come in an 8 only would these fit
  • math help super confused
  • any girls that like to wear leather and boots
  • panache bra 039 s help please

  • none of my sets are popular on polyvore
  • my girlfriend doesn t want to ever see me but she says shes in love with me
  • my glasses keep sliding down my nose despite the many times i tried to adjust the nosepads what should i do
  • what converse should i get
  • me and my girlfriend of 3 years just broke up i was going to propose next month what do i do
  • 6 weeks pregnant and craving caesar salad
  • solve the logarithmic equation help
  • morning sickness at 11 weeks
  • ttc question plz help
  • what does it mean that i have dreams my boyfriend cheats on me right in front of me
  • what shall i wear
  • should we sleep in the same bed
  • what do you think of this outfit
  • #If you have any other info about this subject , Please add it free.#
    Your name:
    E-mail:
    Telphone:

    Your comments:


    If you have any other info about SA's Internet Banking "Full of Holes" , Please add it free.

    About us -Site map -Advertisement -Jion us -Contact usExchange linksSponsor us
    Copyright© 2008 hzfn.com All Rights Reserved
    Site made&Support support@hzfn.com    E-mail: web@hzfn.com