Welcome, Guest: Register On Nairaland / LOGIN! / Trending / Recent / New
Stats: 3,156,471 members, 7,830,370 topics. Date: Thursday, 16 May 2024 at 08:29 PM

Www.naijaprides.com/2019/04/how-hackers-hack-bank-accounts-and.html?m=1 - Webmasters - Nairaland

Nairaland Forum / Science/Technology / Webmasters / Www.naijaprides.com/2019/04/how-hackers-hack-bank-accounts-and.html?m=1 (908 Views)

How To Hide ?m=1 From Blogger Link In Mobile View To Give Clean Url / What Dfiff Between Xhtml And Html / Adsense and HTML Code Parser - What's it Used For and How To Use It (2) (3) (4)

(1) (Reply)

Www.naijaprides.com/2019/04/how-hackers-hack-bank-accounts-and.html?m=1 by cybergurutech(m): 3:56am On Apr 07, 2019
Most people studying hacking have a keen interest in learning how they can hack bank accounts.
They become discouraged with the prevailing perception that it is almost impossible to hack credit cards, debit cards, or net banking passwords, which is true to an extent.
Today I will discuss with you why hacking bank account information is tough and considered to be almost impossible.
We will also discuss the different, contemporary methods that hackers use to hack bank accounts.

All of these online transactions involve money, meaning they’re using banking information, credit or debit card payments, or simply net banking.
Most banks use SSL (Secure Sockets Layer) connection and at least 128 or 256-bit encryption for online banking and transaction purposes.

An additional layer of security that companies are introducing is called “transaction PIN layer” which means that for each and every online transaction you have to enter your password
And that during transactions you have to enter a PIN, a type of password between 4 and 8 characters in length.
Thus, banks do a lot of work to protect your credentials from the eyes of the world that may wish to gain access to your vital information.
The attacks successfully targeted online bank account holders in Germany by using call-forwarding features built into the SS7 protocol
When mobile phone users travel abroad, the SS7 administrative data network allows local phone networks to verify that the user’s SIM card is valid,
But that SS7 functionality can also be abused. In the case of the German online bank attacks :
Phishing attack:

Fake emails tricked victims into visiting lookalike bank websites, where they were directed to enter all login,
And related information required to initiate a money transfer, including their account number.
Account password and the mobile phone number they registered with the bank to receive a one-time mobile transaction authentication number (mTAN),
Which must be entered into the bank’s website to approve money transfers.

Call forwarding:

Using a mobile telephony network located abroad, attackers instruct it – via SS7 – to forward all calls and SMS messages
Sent to a victim’s mobile phone number to an attacker-controlled number.
Fraudsters can then log into a victim’s account, initiate a money transfer and then receive the mTAN required to approve the transfer.

In other criteria, it appears that the telcos are “effectively modifying how SS7 works,” says Woodward, who’s also a cybersecurity adviser to the EU’s law enforcement intelligence agency, Europol.

“That’s good. We can only hope that other telcos follow suit.”

“Mounting Security Concerns“

The SS7 protocol dates from the 1970s and its authors assumed that only a closed group – comprising large telecommunications firms
Would be able to provide telephony services, Woodward says.
Then the internet and voice over IP communications came along, creating all sorts of inexpensive telephony networks.
Could accessed and legitimate features potentially used for unintended purposes.
Ways in which SS7 could exploit began coming to light in 2008 when German researcher Tobias Engel demonstrated.
Related research appears to have surged after 2013 when former National Security Agency contractor
Edward Snowden leaked information showing that the intelligence agency was using SS7 to help spy on targets.

Read more ....
Source: www.naijaprides.com/2019/04/how-hackers-hack-bank-accounts-and.html?m=1

(1) (Reply)

How Do I Mention A Moniker On Nairaland? / Looking For Someone To do COPY And PASTE task For Me. / Top 5 Nigerian Health & Wellness Blog To Follow This 2020

(Go Up)

Sections: politics (1) business autos (1) jobs (1) career education (1) romance computers phones travel sports fashion health
religion celebs tv-movies music-radio literature webmasters programming techmarket

Links: (1) (2) (3) (4) (5) (6) (7) (8) (9) (10)

Nairaland - Copyright © 2005 - 2024 Oluwaseun Osewa. All rights reserved. See How To Advertise. 11
Disclaimer: Every Nairaland member is solely responsible for anything that he/she posts or uploads on Nairaland.