Hackers Steal $6.7M In Bank Cyber Heist 91
Orome1 writes "A perfectly planned and coordinated bank robbery was executed during the first three days of the new year in Johannesburg, and left the targeted South African Postbank — part of the nation's Post Office service — with a loss of some $6.7 million. The cyber gang behind the heist was obviously very well informed about the post office's IT systems, and began preparing the ground for the heist a few months before, by opening accounts in post offices across the country and compromising an employee computer in the Rustenburg Post Office."
Re:Organized trolling campaign on Slashdot (Score:2, Interesting)
Not sure if serious. he posted evidence, you just don't like it. Refute the claims.. oh wait you won't even post your name. great job.
Re:Organized trolling campaign on Slashdot (Score:4, Interesting)
Surprised it took so long for somebody to do this (Score:5, Interesting)
I was part of a small team that described a pretty similar attack scenario to a customer almost 10 years back. It is no surprise at all that this worked and it would work in a lot of other places as well. The only really tricky part is coordinating the mules (and keeping them quiet) as you do not know how much money is available at each specific ATM. But you can guess by observing usage patterns (counting customers) and how often they are re-stocked.
FTFY (Score:4, Interesting)
Politicians have been stealing much larger amounts for years.
honestly, this has probably happened in the USA (Score:5, Interesting)
im guessing that the main reason it seems like an 'unusual south africa thing' is because US banks never, ever talk about this kind of thing.
partly out of embarassment, partly because the entire system is based on 'security through obscurity'.
----
of course, oblig. comment about how thousands of US banks failed in 2008/9/10 due to the CDO fraud system - which directly involved and benefited the ratings agencies. but its almost like nobody cares about that. they care about 5 million stolen from ATMs, but not about 2 trillion stolen from the taxpayers.
...sigh... and they worked SO hard on the book. (Score:4, Interesting)
The whole book is this heist.
Literally.
Just check out the summary.
The thing that makes this book series special is that they don't say, "I ran nmap and knew from the output they were running a webserver."
They say "I ran nmap with 'sudo nmap -P0 -T3 -p 80 127.0.0.1 -oA localscan'
And got:
Starting Nmap 5.21 ( http://nmap.org/ [nmap.org] ) at 2012-01-17 20:55 PST Nmap scan report for localhost (127.0.0.1) Host is up (0.000083s latency). PORT STATE SERVICE 80/tcp open http Nmap done: 1 IP address (1 host up) scanned in 0.07 seconds And could see from the line "80/tcp open http"
http://www.amazon.com/Stealing-Network-How-Own-Continent/dp/1931836051 [amazon.com]