NEWS A former hacker has demonstrated how to break through the online defences of internet banks by breaching the security of Microsoft's web server software. An unidentified Swedish hacker-turned-security-expert showed a Reuters reporter how he could by-pass the security guarding three of Sweden's four biggest banks in a matter of minutes. While the hacker did not break into individual accounts he reportedly made it clear that he could have set up money transfers from one account to another. He even showed how it was possible to then cover his tracks to avoid detection. This revelation will be a further embarrassment for Microsoft whose server security has been a cause of industry concern on many occasions in the past. It will also damage the reputations of online banks who are constantly waging a battle against inertia among customers unwilling to move online due of concerns about security. According to Reuters, the former hacker relied on various weaknesses resulting from Microsoft's implementation of Secure Socket Layer (SSL) - the industry standard for transmitting sensitive data such as credit card numbers and passwords via the internet. However, Microsoft isn't solely to blame for the vulnerabilities. The former hacker said the bank's own network administrators, who have failed to properly install Microsoft's software, must take a large share of the blame.
'Here's how you rob banks using Microsoft software'
'...and for my next trick...'
Post your comment
In order to post a comment you need to be registered and logged in.
You can also log in with Facebook. Log in or create your silicon.com account below
Get silicon.com's daily newsletter
-

Enter your email to register
Featured white papers
-
Keeping flash drives secure with biometric authentication
People and organisations hand over their most valuable and vital personal information to government agencies. It is...
-
Detection systems guard against network intrusion
How do the different types of intrusion prevention system (IPS) work? Inline systems sit on the network like layer-two...
-
How malware threats have changed
These days, cybercriminals have four core weapons: targeted attacks, infecting websites, social networking and mobile...
Keep in touch with silicon.com
-
Connect with silicon.com on Facebook
Discuss the news of the day with the silicon.com team
-
Follow silicon.com on Twitter
Get regular updates from the silicon.com editors
-
Join the silicon.com LinkedIn networking group
Network with your peers and share expertise
Latest jobs
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
silicon.com newsletters
-
Stay up to date with silicon.com newsletters
Keep up with the latest news and analysis from silicon.com with our free email newsletters




