<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title> &#187; Ebanking</title>
	<atom:link href="http://www.megapanzer.com/tag/ebanking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.megapanzer.com</link>
	<description></description>
	<lastBuildDate>Fri, 30 Jul 2010 11:04:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Safer ebanking</title>
		<link>http://www.megapanzer.com/2010/07/25/safer-ebanking/</link>
		<comments>http://www.megapanzer.com/2010/07/25/safer-ebanking/#comments</comments>
		<pubDate>Sun, 25 Jul 2010 09:22:09 +0000</pubDate>
		<dc:creator>carrumba</dc:creator>
				<category><![CDATA[Carding]]></category>
		<category><![CDATA[Info]]></category>
		<category><![CDATA[Stuff]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[bank]]></category>
		<category><![CDATA[Ebanking]]></category>
		<category><![CDATA[token]]></category>

		<guid isPermaLink="false">http://www.megapanzer.com/?p=3611</guid>
		<description><![CDATA[Recently I read an article in the newspaper about a new product incorporated in a Swiss bank where they use a security token with fingerprint check and visual data transmission interpreted by the token. Check this site if you want to know more about it and you understand German : http://www.axsionics.ch/ . The point where [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.megapanzer.com/wp-content/uploads/information.jpg"><img src="http://www.megapanzer.com/wp-content/uploads/information-150x150.jpg" alt="" title="information" width="75" height="75" class="alignright size-thumbnail wp-image-2871" /></a>Recently I read an article in the newspaper about a new product incorporated in a Swiss bank where they use a security token with fingerprint check and visual data transmission interpreted by the token. Check this site if you want to know more about it and you understand German : http://www.axsionics.ch/ .<br />
The point where many attacks will fail is the transaction combined with account information. If the Go or No Go of the transaction is controlled by the token, outside of the attackers reach, all of the known transaction attacks are useless. An attack is detected easily and the transaction won&#8217;t be conducted.<br />
Good job. One step ahead. Now it&#8217;s the attackers turn to react to this.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.megapanzer.com/2010/07/25/safer-ebanking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gang sentenced for UK bank trojan.</title>
		<link>http://www.megapanzer.com/2009/11/18/gang-sentenced-for-uk-bank-trojan/</link>
		<comments>http://www.megapanzer.com/2009/11/18/gang-sentenced-for-uk-bank-trojan/#comments</comments>
		<pubDate>Wed, 18 Nov 2009 17:40:20 +0000</pubDate>
		<dc:creator>carrumba</dc:creator>
				<category><![CDATA[News & media]]></category>
		<category><![CDATA[bank]]></category>
		<category><![CDATA[Ebanking]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://www.megapanzer.com/?p=3116</guid>
		<description><![CDATA[A British court has sentenced four men to prison after they admitted they used sophisticated trojan software to steal almost £600,000 from bank accounts and send it to Eastern Europe. London&#8217;s Southwark Crown Court on Friday imposed sentences of as much as 4 and a half years on the men. According to IDG News, they [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.megapanzer.com/wp-content/uploads/newspaper-150x150.jpg" alt="newspaper" title="newspaper" width="75" height="75" class="alignright size-thumbnail wp-image-2595" />A British court has sentenced four men to prison after they admitted they used sophisticated trojan software to steal almost £600,000 from bank accounts and send it to Eastern Europe.</p>
<p>London&#8217;s Southwark Crown Court on Friday imposed sentences of as much as 4 and a half years on the men. According to IDG News, they used a trojan known as PSP2-BBB to stealthily monitor victims&#8217; browsers. It inserted special fields into banking pages that asked for sensitive information and then sent it to the criminals when the user complied.</p>
<p>To give it the pages air of legitimacy, they bore the logo of NatWest, according to other news reports. The gang used a stable of money mules to transfer the funds to countries including Ukraine, which is also the location of a computer server that was used in the scam.</p>
<p>At least 138 banking customers were affected with &#8220;just under £600,000 being fraudulently transferred,&#8221; according to the Press Association. Almost £140,000 was later recouped from Royal Bank of Scotland, NatWest&#8217;s parent company.</p>
<p>Read full article <a href="http://www.theregister.co.uk/2009/11/16/bank_trojan_gang_sentenced/" target="_blank">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.megapanzer.com/2009/11/18/gang-sentenced-for-uk-bank-trojan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Trojan plunders $480k from bank account</title>
		<link>http://www.megapanzer.com/2009/10/15/trojan-plunders-480k-from-bank-account/</link>
		<comments>http://www.megapanzer.com/2009/10/15/trojan-plunders-480k-from-bank-account/#comments</comments>
		<pubDate>Thu, 15 Oct 2009 06:57:07 +0000</pubDate>
		<dc:creator>carrumba</dc:creator>
				<category><![CDATA[News & media]]></category>
		<category><![CDATA[Ebanking]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://www.megapanzer.com/?p=2997</guid>
		<description><![CDATA[I remember someone told me propagating a trojan nowadays by email is ineffective and the stupidest suggestion I made here. Even if not very elegant or 1337 apparently it&#8217;s still quite effective as you can read in this news article. People still doubleclick on executable attachments as a dog will chase the tennisball when you [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.megapanzer.com/wp-content/uploads/newspaper-150x150.jpg" alt="newspaper" title="newspaper" width="75" height="75" class="alignright size-thumbnail wp-image-2595" />I remember someone told me propagating a trojan nowadays by email is ineffective and the stupidest suggestion I made here. Even if not very elegant or 1337 apparently it&#8217;s still quite effective as you can read in this news article. People still doubleclick on executable attachments as a dog will chase the tennisball when you throw it.<br />
</p>
<blockquote><p>A Pennsylvania organization that helps develop affordable housing learned a painful lesson about the hazards of online banking using the Windows operating system when a notorious trojan siphoned almost $480,000 from its account.</p>
<p>News reports here and here say $479,247 vanished from a bank account belonging to the Cumberland County Redevelopment Authority after it was hit by Clampi. The trojan gets installed by tricking users into clicking on a file attached to email and then lies in wait for the victim to log in to online financial websites. The authority has so far been able to recover $109,467 of the stolen loot.</p>
<p>The theft is part of a rash of online heists that have stolen millions of dollars from businesses and non-profit organizations. While circumstances are different in each case, they all point to a single point of failure: Each theft relied on the successful compromise of a Windows-based system.</p></blockquote>
<p>Read the full article <a href="http://www.theregister.co.uk/2009/10/14/microsoft_windows_bank_thefts/" target="_blank">here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.megapanzer.com/2009/10/15/trojan-plunders-480k-from-bank-account/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How to plunder a bank account with Megapanzer 0.1</title>
		<link>http://www.megapanzer.com/2009/08/17/how-to-plunder-a-bank-account-with-megapanzer-0-1/</link>
		<comments>http://www.megapanzer.com/2009/08/17/how-to-plunder-a-bank-account-with-megapanzer-0-1/#comments</comments>
		<pubDate>Mon, 17 Aug 2009 12:04:04 +0000</pubDate>
		<dc:creator>carrumba</dc:creator>
				<category><![CDATA[Tools & sources]]></category>
		<category><![CDATA[Ebanking]]></category>
		<category><![CDATA[megapanzer]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://www.megapanzer.com/?p=2603</guid>
		<description><![CDATA[Months after the announcement, and weeks in production, the Megapanzer video is finally here, cut, processed and uploaded to youtube! The video shows in seven simple steps how to take over an ebanking session of a victim and which tools you need to accomplish this stunt. The weakest link in the chain is (obviously) not [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.megapanzer.com/wp-content/uploads/money-150x150.jpg" alt="money" title="money" width="75" height="75" class="alignright size-thumbnail wp-image-2673" />Months after the announcement, and weeks in production, the Megapanzer video is finally here, cut, processed and uploaded to youtube!</p>
<p>The video shows in seven simple steps how to take over an ebanking session of a victim and which tools you need to accomplish this stunt.<br />
The weakest link in the chain is (obviously) not the bank itself but the trustful user,  who executed the trojan horse he received by a patient attacker. Once an attacker is on the victim system, he has full control and power to deceive the victim and make him believe everything is just fine. Hostnames are redirected to the attackers proxy server and SSL certificates are injected in the certificate store. So in reality, nothing is just fine!</p>
<p>In the following video, the ebanking server was <strong>not </strong>hacked. Only my machine was infected which allowed me to intercept the encrypted data. Everyhing you see happened inside my local network and no foreign machines were affected.</p>
<p>Here <strong>the link to Rapidshare</strong> to download the video : <a href="http://rs687.rapidshare.com/files/271653282/Megapanzer.mp4" target="_blank">Megapanzer 0.1</a></p>
<p>Both Youtube and Vimeo removed the video after some time so the next place to see for how long the video will stay online is Metacafe. But the quality is rather bad and probably it&#8217;s me who will move it to an other video portal.<br />
</p>
<div align="center">
<p id='preview'></p>
<p>  <script type='text/javascript' src='http://miliw0rm.securitytube.net/swfobject.js'></script> <script type='text/javascript'> var s1 = new SWFObject('http://miliw0rm.securitytube.net/player.swf','player','480','384','9'); s1.addParam('allowfullscreen','true'); s1.addParam('allowscriptaccess','always'); s1.addParam('flashvars','file=http://videos.securitytube.net/How-to-Plunder-a-Bank-Account-with-Megapanzer.flv'); s1.write('preview'); </script></div>
<p></p>
]]></content:encoded>
			<wfw:commentRss>http://www.megapanzer.com/2009/08/17/how-to-plunder-a-bank-account-with-megapanzer-0-1/feed/</wfw:commentRss>
		<slash:comments>20</slash:comments>
		</item>
	</channel>
</rss>
