Project Blitzkrieg e-banking heist is a credible threat, McAfee says
Similar to other banking Trojan programs like Zeus or SpyEye, Gozi Prinimalka can detect when victims access banking websites and steal log-in credentials and other data associated with their accounts. That may include challenge-question answers for outgoing transactions, account balances and time-stamps for their last log-in. The malware targets a list of websites belonging to U.S. national banks, investment banks and credit unions.
After accounts with high balances have been identified, the attackers use the stolen credentials to initiate money transfers to accounts set up by co-conspirators known as money mules, who then withdraw the funds and wire them out of the country.
To prepare for Project Blitzkrieg, financial institutions can tweak their fraud detection systems to look for anomalous behavior such as log-ins coming from foreign locations, log-ins coming from the customer's IP (Internet Protocol) address at unusual hours or transactions from multiple unrelated accounts going to accounts owned by the same person, he said.
VorVzakone mentioned that he's going to be doing "Skype flooding," so financial institutions should be aware that their customer service lines might be flooded and they should take any action that they can to address that, Sherstobitoff said. They should also advise their customers to update their antivirus software and report any suspicious messages or pop-ups that are not typical of online banking.
- Step Out of the Bull's-Eye Learn about the evolution of targeted attacks, the latest in security intelligence, and strategic steps to keep your business safe.
- Using Cyber Insurance and Cybercrime Data to Limit Your Business Risk This paper examines the challenges of understanding cyber risks, the importance of having the right cyber risk intelligence, and how to use this...
- 5 Tips to Secure Small Business Backdoors in the Enterprise Supply Chain This paper examines the insecurity of the small businesses in the supply chain and offers tips to close those backdoors into the enterprise.
- Comprehensive Advanced Threat Defense The hot topic in the information security industry these days is "Advanced Threat Defense" (ATD). This paper describes a comprehensive, network-based approach to...
- Live Webcast Security Vulnerabilities Associated With Having Local Administrator Privileges Viewfinity will demonstrate how removing admin rights and granularly managing privileges at the application level reduces the attack surface.
- Security Vulnerabilities Associated With Having Local Administrator Privileges Viewfinity will demonstrate how removing admin rights and granularly managing privileges at the application level reduces the attack surface.
- Keep Servers Up and Running and Attackers in the Dark An SSL/TLS handshake requires at least 10 times more processing power on a server than on the client. SSL renegotiation attacks can readily... All Cybercrime and Hacking White Papers | Webcasts