HSBC hacked leaked customer data

International financial institution HSBC reported it was breached in October. According to names, addresses, transaction history, account information and more leaked.
HSBC
In a Communication [PDF] filed in the State of California, the stated that it was aware that some online accounts were accessed by unauthorized users from October 4 to 14. The hack affected a fraction of the bank's American customers (less than 1 percent of its American customer base), the company told the BBC, but exact numbers have not been released at this time.

Spread names, addresses, birthdates, and account balances, transaction histories, and account numbers.

"HSBC deplores this and takes responsibility for protecting its customers," the bank said in a statement.

We have warned customers whose accounts may have been tampered with, and we offer them a one-time anti-theft service in their transactions.

The hack seems to have been done with brute force attacks. Attackers managed to find passwords using automated account credentials.

Bryan Becker, application security researcher at WhiteHat Security Reported:

In general, banks require some form of authentication factors, and this stops any attack he uses . So we have the question: Why wasn't HSBC using two-factor authentication, or if it was, what was it? cause of the breach?

______________________________

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).