|
|
09-11-2006, 11:34 AM | #1 | ||
Regular Member
Join Date: Jun 2006
Posts: 37
|
Heres a story that will make your hair curl and rethink just how secure is internet banking?
Had a few grand taken out of my account fraudulently....the bank replaced the stolen money which is a relief but its been a stressful few weeks. I had the latest antivirus software and XP service pack 2 installed on my work PC. The antivirus downloads updates each day and regularly auto scans my PC. Somehow an infosneak virus got into my PC....it monitors and forwards your keystrokes to a remote user....blah blah. Apart from the fraud and the security thing what really concerns me is the process the bank take you through. Why do I have to get a police report - when it is the banks system that has been breached - if a branch is robbed in a stick up - the bank loses out calls the cops etc ......gets the report ...not me. Why do I have to assign via a stat dec the conducting of my investigation away from the police ....to the bank. This doesnt seem very independant - besides my fraud could have just as easily been committed within the bank. When you sign up for internet banking the bank specifies the minimum computer security requirements you must have - where does this leave your employer or an IT contractor in terms of potential liability if the workplace internet secuirty systems fail and a fraud occurrs with an employees bank account where the employer allows staff to conduct internet banking. If the staff member is the victum of a fraud and the bank fails to cough up then the employee may have case to sue the employer or the IT contractor. After talking to a few colleagues who work in banks there is a great deal of internet banking fraud happening out there....the banks are keeping it quiet - you can understand why.....if people lose confidence in the security of internet banking the cost to the banks to reinstate their branch structure would be horrific. For me.....no more internet banking.......its conveiniant but the risks and the other potential complications are to great. In case you wondering 'which bank'....it wasnt 'that bank' but the whole expereince left me feeling rather 'blue'. |
||
09-11-2006, 11:39 AM | #2 | ||
PM me if you want
Join Date: Dec 2004
Location: Pk Ranger Modding - QLD 👍
Posts: 7,498
|
The workplace has no obligation to provide internet access in the first place, so therefore it would be a use at own risk scenario. I fail to see how an employer could be held responsible at the end of the day for someone conducting personal business on a work computer.
Good to see you got your money back though.
__________________
Owner of first ever car to retrofit BA SSS - the EA2BA Send me a PM if you want to know anything 2010 Ford Ranger PK High Rider (Auto) - 2011 Ford Fiesta (Auto)
|
||
09-11-2006, 12:03 PM | #3 | |||
Regular Member
Join Date: Jun 2006
Posts: 37
|
Quote:
|
|||
09-11-2006, 11:52 AM | #4 | ||
AFF Post NAZI
Join Date: Mar 2006
Location: Albury
Posts: 3,634
|
ive known for a long time about the Fruad and theft Via internet banking...hence why i got 2 Different accounts and my employer pays 2/3rds into one and 1/3 into another... i only ever access the 1/3 via the net and there is very little money in there.. the other one i only have a card for and go into the bank to do what ever it is that i have to do...IE pay bills or what ever esle....best of both worlds ....
__________________
"Its not always about power, The car has to handle Beautifully" |
||
09-11-2006, 12:14 PM | #5 | |||
FF.Com.Au Hardcore
Join Date: Jan 2006
Location: Sitting on the Dunny , Contemplating "What to do Next".
Posts: 505
|
Quote:
I feel much safer this way , plus can still pay via internet.
__________________
XB Futura 302 , Wife ED Fairmont ,1994 Polynesian Green. Daughter No 1 KJ Laser , Daughter No 2 KH Laser Keeping FORDS in the family (Embarressment :yeees: , Son now has a "Camira" : ) "Look Right , Look Left , Look Right , BEFORE crossing Roads"
|
|||
09-11-2006, 12:23 PM | #6 | |||
AFF Post NAZI
Join Date: Mar 2006
Location: Albury
Posts: 3,634
|
Quote:
__________________
"Its not always about power, The car has to handle Beautifully" |
|||
15-11-2006, 09:00 AM | #7 | |||
Regular Member
Join Date: Apr 2006
Location: Sydney
Posts: 260
|
Quote:
|
|||
09-11-2006, 11:55 AM | #8 | ||
Guest
Posts: n/a
|
How did the virus get installed on the computer in the first place is my question.
Also does your net banking have a password that you type in, or you have to press the keys with your mouse. |
||
09-11-2006, 12:06 PM | #9 | |||
Regular Member
Join Date: Oct 2006
Location: Perth, WA
Posts: 37
|
Quote:
Cheers Ryan |
|||
09-11-2006, 01:05 PM | #10 | |||
The 'Stihl' Man
Join Date: Jan 2005
Location: TAS
Posts: 27,591
|
Quote:
Ive used internet banking for ages and never had an issue. You just need to keep your antivirus and spyware apps up to date, and run them atleast everyday.
__________________
|
|||
09-11-2006, 12:07 PM | #11 | ||
PM me if you want
Join Date: Dec 2004
Location: Pk Ranger Modding - QLD 👍
Posts: 7,498
|
I like how the banks set a minumum securtity policy for the use of the services they provide, yet do no checks before allowing you to use the services, let alone a splash page with the current requirements, no wonder fraud is so high.
whats the saying all care but no responability. I go through alot of trouble to keep everything up to date on our network, both patches and anti-virus and regular scans, but at the end of the day if someone gets a virus they put it there, I can't baby sit users 24/7.
__________________
Owner of first ever car to retrofit BA SSS - the EA2BA Send me a PM if you want to know anything 2010 Ford Ranger PK High Rider (Auto) - 2011 Ford Fiesta (Auto)
|
||
10-11-2006, 09:00 AM | #12 | |||
Official AFF conservative
Join Date: Dec 2004
Location: Adelaide, SA
Posts: 3,549
|
Quote:
Fraud in terms of operational risk will ALWAYS be present and the banks do exceptionally well to manage it. It's a huge issue. In a perfect world, everyone would be using secure ID tags. Indeed, i think HSBC requires this "tertiary" level of security for their internet bankers. But think what it would cost one of the majors to send a (quite expensive) ID tag to EVERY single customer. To put it bluntly - the losses attributable to fraud will cost less than such an excercise. Why would you spend $10 million per year to prevent $5million of fraud? As you can see - it's not a 'black and white' answer to a black and white problem. In most cases in terms of follow up action, it is a lack of interest from the police. Think about it. What political gain is there to be had? The bank wears the cost of frauds, the police dont have any benefit to gain by helping institutions which most of the public despise. In this case, as has been said, the flaw is in the operation of windows on your computer. As far as the bank is concerned, there was no breach. It was one of their customers that got ripped off. Im suprised you're not more grateful that they covered it.
__________________
A cup half empty... but full of euphoria. |
|||
10-11-2006, 09:14 AM | #13 | |||
SV6000. Yum
Join Date: Aug 2006
Posts: 846
|
Quote:
|
|||
10-11-2006, 02:25 PM | #14 | ||||
Cuban... nothing like it
Join Date: Dec 2004
Location: Watching in amusement
Posts: 11,643
|
Quote:
Secure ID Cards for internet banking... are you sure its leading edge technology? : : : Anyone heard of the EPOLI system, developers have managed to intergrate a payment gateway system to pre populate feilds in your Internet Banking window for ease of payments....
__________________
Quote:
|
||||
11-11-2006, 07:49 PM | #15 | ||
Regular Member
Join Date: Dec 2004
Posts: 98
|
[QUOTE=Laminge]Secure ID Cards for internet banking... are you sure its leading edge technology? : : :
its not westpac has used that for payment authorisation for nearly 5 or more years |
||
10-11-2006, 11:52 AM | #16 | |||
Regular Member
Join Date: Jun 2006
Posts: 37
|
Quote:
I'm certainly grateful that my money was recovered. Regarding my fraud all of the computer security arrangements including current anti virus software,a 2 way firewall, spy software were in place, yet....there was still a breach. My system was not breached it was the banks. The police are interested but dont have the resources to deal with the huge volume of fraud that is occurring. I have been contacted by the cops on at least 3 occasions but it is to difficult for them to gain access the banks systems to investigate.The banks are keeping the huge numbers of frauds quiet for obvious reasons. Regarding the practice of some banks to offer keyboard style login this is no longer secure. There is now a virus that uses a keyboard emulation program to obtain your password details. I heard about this from a mate who operates an internet cafe in London. Internet banking is useful...but I no longer trust it. There is no way my pay is now going to a bank account that is linked to internet banking. These bastards monitor your account and no when you are next going to be paid and then whammo.....2 weeks work is gone. |
|||
10-11-2006, 01:07 PM | #17 | |||||
Regular Member
Join Date: Oct 2006
Location: Perth, WA
Posts: 37
|
Quote:
Quote:
Quote:
Sorry to rain on you parade....but what's the saying...no point crying over spilt milk...especially when you dropped the carton....especially when the bank replaced said carton. :Up_to_som |
|||||
10-11-2006, 02:19 PM | #18 | |||
Regular Member
Join Date: Jun 2006
Posts: 37
|
Quote:
Why are you so defensive about the lack of security of internet banking? People ARE being ripped off. The backlog of internet banking fraud cases in my bank is now 3 -5 weeks or around 500+ transactions. And why are the banks taking the financial hit by reimbursing customers the money that has been stolen? ....their very concerned and do not want the publicity. Can you answer this.....would a bank give you your money back if you took out cash via teller and were then robbed out in the street? I will answer it for you NO. The banks have to much to lose if their is a substantial drop in confidence in the security of internet banking. In answer to your comment as to why millions arent being ripped off (and I dont recall mentioning any specific amount being taken from my account- where did you dream that one up??) - the answer is quite simple there are daily withdrawl limits placed on these accounts and the fraudsters prefer to embezzle smaller amounts to minmise attention. So dude...you say my 'story' doesnt add up?? Really? A story you claim. and .....am I really a fool for forgetting to logon on to my internet banking account at 4.16am and noticing that their had been a fraudulent withdrawl at 4.09am? and that my last login in time was 8.50pm 7 days prior. Actually on reflection I feel sorry for you....or perhaps you work in a bank whatever, my 'story' was put out there in the public interest and its a pity you have attempted to discredit it. I have no idea why, but I wish you well with your confidence with the security of internet banking. |
|||
10-11-2006, 02:16 PM | #19 | |||
Regular Member
Join Date: Apr 2005
Posts: 284
|
Quote:
|
|||
10-11-2006, 02:32 PM | #20 | |||
Regular Member
Join Date: Jun 2006
Posts: 37
|
Quote:
|
|||
10-11-2006, 02:38 PM | #21 | ||||
Cuban... nothing like it
Join Date: Dec 2004
Location: Watching in amusement
Posts: 11,643
|
Quote:
No, the banks system was not breached, once you come to accept this, you will realise the flaws at your end. No internet banking system has been breached. I have over 21years experience in this industry. As it is your right to run around the room with this theory being waived madly at others, so is mine to dispute it with a tad little more experience. Your answer of NO to the ATM in the street is also of interest, but I am afraid the answer is not so straight forward as a NO. I have seen enough people go through the justice system who would also disagree.
__________________
Quote:
|
||||
11-11-2006, 10:56 AM | #22 | ||
Audi S3
Join Date: May 2005
Location: Sydney.
Posts: 8,307
|
i can check my accounts on the net. but cannont transfer money or something?
i dont really know. my parents set it up. but no hassles here.
__________________
|
||
11-11-2006, 07:45 PM | #23 | |||
Regular Member
Join Date: Dec 2004
Posts: 98
|
Quote:
|
|||
09-11-2006, 03:13 PM | #24 | |||
Regular Member
Join Date: Apr 2005
Posts: 284
|
Quote:
As long as you take precautionary measures to keep you PC security up to date, the chances of running into this kind of trouble is very very low. another way these people get your credentials is with those fake emails asking people to verify their credentials, then they basically do the same thing. |
|||
09-11-2006, 03:21 PM | #25 | ||
likes falcon's
Join Date: Jan 2005
Location: Melbourne
Posts: 6,091
|
that's why westpac's logon system is perfect... push button system (on screen keyboard)
__________________
www.carhubsales.com.au |
||
09-11-2006, 03:29 PM | #26 | ||||
Cuban... nothing like it
Join Date: Dec 2004
Location: Watching in amusement
Posts: 11,643
|
Quote:
Agree There is no back door into the banks system, just your pc.
__________________
Quote:
|
||||
09-11-2006, 03:54 PM | #27 | ||
Regular Member
Join Date: Feb 2005
Location: Between WA and VIC
Posts: 341
|
When I used to use Internet banking, I would only access it on my Linux machine at home, as I never trust Windows.
However if you really feel the need to use Windows, ALWAYS use Windows update. If you pirated your copy of Windows, you won't be able to use it, because they verify that your copy is genuine before allowing access. Believe me, it's well worth paying for a copy to keep Windows up to date. Don't even think about going on the net unless you have SP2 Always have an antivirus program running. I use AVG as it's free and is updated almost daily. Probably a good idea to use a different firewall besides the Windows one.
__________________
2003 BA XT Wagon, I6, 4sp Auto, Dual Fuel, Prins Autogassystemen VSI LPG RIP: EA S MPFI 5 speed sedan w/exhaust, LSD, tint, 225's, DBA Golds, EL twin thermos, dual fuel and fluffy dice ; Stolen, recovered and written off, 7th April 2007 |
||
09-11-2006, 06:58 PM | #28 | |||
AFF Post NAZI
Join Date: Mar 2006
Location: Albury
Posts: 3,634
|
Quote:
__________________
"Its not always about power, The car has to handle Beautifully" |
|||
10-11-2006, 07:53 AM | #29 | ||
FF.Com.Au Hardcore
Join Date: Aug 2005
Location: Barossa Valley, South Australia
Posts: 3,381
|
Used internet banking now for probably in excess of 5 years. Never once have I had a problem. As everyone has said, it is a matter of being dilligent with your computer security at home.
Another measure you can use at home is to not use Internet Explorer whilst browsing the internet. This also helps reduce the means of virii being installed on to your PC.
__________________
Cheers, Sam. |
||
10-11-2006, 02:58 PM | #30 | |||
FF.Com.Au Hardcore
Join Date: Jan 2005
Location: Melbourne
Posts: 500
|
Quote:
|
|||