Results 31 to 45 of 55
Thread: Internet banking fraud
-
26th July 2005, 06:54 PM #31Originally Posted by Sturdee
You are of course correct; I must have been having a senior moment. Well, actually my Westpac online banking password is 6-digit alphanumeric.
Rocker
-
26th July 2005, 07:55 PM #32
The Credit union I'm with has a log-in code and a separate code for external transfers.
Mick
avantguardian
-
26th July 2005, 09:09 PM #33Originally Posted by silentC
No I use a free ware program I found called 101 clips it allows you to retain up to 30 things , text , pictures, web pages etc on your clipboard instead of just the last thing you saved
You just line up your curser open 101 clips from task bar and click on the entry you want
Find it under Google 101 clips
Rgds
Russell
Don't take life too seriously; No one gets out alive.
-
26th July 2005, 09:39 PM #34
Several people have mentioned that their pin numbers are sent unencrypted.
Every bank in Australia will be using an encrptyed web session. This is visable via the little padlock on the bottom right of the browser. The web address will probably start with https://.
This means that the whole session should be encrypted in either 64 bit or 128 bit (depending on browser) key.
These sessions have many short commings and ways to crack them, but by far the way most people get stung is by following a link to a dodgy website. Always go to your banking site via your favourite links (never via an email) and check that the padlock appears.Specializing in O positive timber stains
-
26th July 2005, 09:55 PM #35Originally Posted by bitingmidge
Funny I heard the same thing this morning
-
26th July 2005, 10:50 PM #36Originally Posted by silentCWhatever note you blow youre never more than a semitone away from the correct one....(Miles Davis)
-
27th July 2005, 09:58 AM #37
You must've missed this:
Originally Posted by Me on Page 2"I don't practice what I preach because I'm not the kind of person I'm preaching to."
-
27th July 2005, 05:27 PM #38Deceased
- Join Date
- Jun 2003
- Location
- ...
- Posts
- 1,460
Originally Posted by Rocker
Love that phrase. I seem to get them too these days.
Peter.
-
27th July 2005, 07:29 PM #39
The other thing that may be possible is to have email confirmation for external transfers.
maybeMick
avantguardian
-
29th July 2005, 03:55 PM #40
Rocker,
I don't think a Trojan would find it difficult to record the banks random querey to you and your reply and so reveal your pin at one go. Bendigo bank uses a little key pendant that generates a one-time verification number, when you press a button, that has a valid life of 1 minute. You use your user name, pin and then this verification. Doesn't matter if a hacker got the pin and user name as they are useless without this verification number.
-
29th July 2005, 06:31 PM #41
Brian,
Sounds good; if a Mexican bank can use a trojan-proof system, why not the Big Four?
Rocker
-
29th July 2005, 08:14 PM #42
I will have to reveal my hand here, I work in one of the 4 majors, no I wont reveal what one. I dont use their net banking but I do work from home and to sign into their VPN from home I have one of those dongles that generates a random number every two minutes, this is run by an outside contractor, so to sign on you need your user id, a pin number and the number from the number generator. Why they dont use a similar system for their internet banking I dont understand, but then again I have worked for this bank for 18 years and still dont understand some of the menagement ideas....
I may not have gone where I intended to go, but I think I have ended up where I needed to be.
My Other Toys
-
1st August 2005, 09:32 AM #43Why they dont use a similar system for their internet banking I dont understand"I don't practice what I preach because I'm not the kind of person I'm preaching to."
-
1st August 2005, 09:58 AM #44Therapeutic woodworker
- Join Date
- Jun 2005
- Location
- rural Sydney
- Age
- 76
- Posts
- 5
Security dongles
Originally Posted by silentC
I am sure that if they did a real analysis of the costs the major banks would see it is worth it.
I currently work for a big Aus University and we use a SecureId which is a small device like a USB memory stick, which displays a number for about 2 minutes. You have to enter this when logging into the financial systems etc with name and p/w etc.
At first (~5 years ago) the external company charged about $300ea. The Uni negotiated to buy in batches and now they are down to less than $100. I am told they have a simpler non-display type that you plug into the USB port and this can be interrogated by the login script. Saves the errors of input. These devices could easily be supplied by the banks.
Even though there would be a cost, think of the cost of investigating and covering just one fraud case. I will be very surprised if we don't see this happening soon.
cheersDr Dee
Trying to work less and machine my time away
-
1st August 2005, 10:39 AM #45
Only if they charge the user for it.
There is no way a bank is going to buy a $100 dongle for every online customer. I don't have any figures on how many Netbank users there are for example, but you would have to guess it to be in the tens of thousands. For 10,000 users it would cost them $1,000,000. Not to mention the cost of distributing them, supporting them, and changing the systems to handle them. I can just see the reaction in the boardroom when someone proposes that.
As for cost of investigating fraud, they hand that over to the Feds. Banks just write losses off."I don't practice what I preach because I'm not the kind of person I'm preaching to."
Similar Threads
-
The Bible - Internet Style............
By Phil Spencer in forum JOKESReplies: 2Last Post: 30th May 2005, 01:01 PM -
Internet chat channels; how often do you visit them?
By Rocker in forum POLLSReplies: 20Last Post: 30th March 2005, 01:15 AM -
Internet Jokes
By craigb in forum JOKESReplies: 0Last Post: 23rd December 2004, 02:08 PM -
Internet Telephone
By Barry_White in forum NOTHING AT ALL TO DO WITH RENOVATIONReplies: 30Last Post: 30th June 2004, 10:10 PM
Bookmarks