Hackers Steal $6.7M In Bank Cyber Heist
Orome1 writes "A perfectly planned and coordinated bank robbery was executed during the first three days of the new year in Johannesburg, and left the targeted South African Postbank — part of the nation's Post Office service — with a loss of some $6.7 million. The cyber gang behind the heist was obviously very well informed about the post office's IT systems, and began preparing the ground for the heist a few months before, by opening accounts in post offices across the country and compromising an employee computer in the Rustenburg Post Office."
42m Rand is not 6.7m USD, it is more like 5.2m.
I'm much more surprised by the fact that they managed to take about 1% of the entire assets of the wanna-be bank. That's pretty disturbing - because that means that nothing was working right. Not their security, not their required privileges, not their fraud detection, nothing. Note to self: don't do business in SA.
Those who can, do. Those who can't, sue.
And to back it up
....$telnet www.postbank.co.za 80
....
Trying 165.8.13.24...
Connected to www.postbank.co.za.
Escape character is '^]'.
GET / HTTP/1.0
HTTP/1.1 404 Not Found
Content-Length: 1635
Content-Type: text/html
Server: Microsoft-IIS/6.0
X-Powered-By: ASP.NET
Date: Wed, 18 Jan 2012 03:35:38 GMT
Connection: close
The page cannot be found
Anybody running windows on their website is highly likely running it inside.
I prefer the "u" in honour as it seems to be missing these days.
It didn't:
http://inaudit.com/audit/it-audit/online-theft-that-sucked-13m-from-financial-firm-in-florida-unmasked-9888/
This was in Florida last year.