Thieves drain 2FA-protected bank accounts by abusing mobile networks

"The unidentified attackers exploited weaknesses in Signalling System No. 7, a telephony signaling language that more than 800 telecommunications companies around the world use to ensure their networks interoperate. SS7, as the protocol is known, makes it possible for a person in one country to send text messages to someone in another country. It also allows phone calls to go uninterrupted when the caller is traveling on a train. The same functionality can be used to eavesdrop on conversations, track geographic whereabouts, or intercept text messages." Continue reading

Continue ReadingThieves drain 2FA-protected bank accounts by abusing mobile networks

I never knew how screwed up global banking was until I started my own bank

"You can imagine my surprise when I found out that SWIFT runs on Windows Vista - an obsolete operating system that Microsoft no longer supports. When my bank received its SWIFT code, we were told that we had to have a computer running Vista in the office in order to connect to SWIFT. It was such an absurd exercise to find an obsolete computer running an obsolete operating system to connect to the supposedly most advanced and important international payment network in the world. Unsurprisingly, SWIFT has been hacked numerous times, both by the NSA as well as private hackers who have stolen a great deal of money from their victims." Continue reading

Continue ReadingI never knew how screwed up global banking was until I started my own bank

Facebook and Google confirmed as victims of $100M phishing scam

"Last month, the Department of Justice charged a Lithuanian man for fraud, aggravated identity theft, and money laundering after documents revealed he scammed two major tech companies for over $100 million by masquerading as a Taiwanese electronics manufacturer. A Fortune report this week identified those two affected companies as Facebook and Google." Continue reading

Continue ReadingFacebook and Google confirmed as victims of $100M phishing scam

Hackers steal 2 billion rubles at Russia’s central bank

"The central bank did not say when the heist occurred or how hackers moved the funds. But so far, the attack bears some similarity to a recent string of heists that has targeted the worldwide financial system. In January 2015, hackers got a hold of an Ecuadorian bank's codes for using SWIFT, the worldwide interbank communication network that settles transactions. In October, hackers used the same technique to slip into a bank in the Philippines. Two months later, hackers tried to make fraudulent requests at a commercial bank in Vietnam. They were stopped. This past February, computer hackers stole $101 million from Bangladesh's central bank -- also by gaining access to SWIFT." Continue reading

Continue ReadingHackers steal 2 billion rubles at Russia’s central bank

American Express Ex-Chief Privacy Officer On ‘The Last Days of Cash’

"Andy Roth, a partner in Dentons' Privacy and Security Group, and Victor Boyajian, a partner in Dentons' Venture Technology Group, explore the evolution of digital payments, virtual currencies and security. The video examines: Bitcoin and other virtual currencies; Regulatory issues in connection to digital payments; The balance between privacy and technological progress; Privacy as a product or feature; and The outlook for consumer payments." Continue reading

Continue ReadingAmerican Express Ex-Chief Privacy Officer On ‘The Last Days of Cash’

‘Without third party bitcoin is safer than Fed notes’

"WM: What we see in the world today with the libor crisis, and Greece, and the failure in Cyprus is regulation does not work. You have regulatory capture, you just have system failure. And the thing that makes bitcoin exciting for people that believe in bitcoin is the fact that it is an emergent system. If it does require regulation to survive then it really wasn’t as good as we thought it was. These sorts of things do happen. You can call this a bank. I would say this is a hosted service run by an 18-year-old. It is not a bank. The people who trusted the third party were really giving away the strength of bitcoin which does not require a third party." Continue reading

Continue Reading‘Without third party bitcoin is safer than Fed notes’

South African banks in massive credit card data breach

"A variant of malware – short for malicious software – called Dexter, inserted into point-of-sale (POS) devices at South African fast-food outlets, has cost local banks tens of millions of rand in what is being described as one of the worst breaches of customer card data in the country's history. South Africa's banks have suffered tens of millions of rand in losses due to a major breach of customer card data by criminal syndicates that infected electronic POS devices using a variant of malicious software called Dexter. It's not known exactly how many POS devices were infected by the malware, but the problem is believed to have been widespread in the fast-food industry." Continue reading

Continue ReadingSouth African banks in massive credit card data breach

New $100 bill costs 60% more to produce

"The C-note just got a colorful makeover — and a heftier price tag. The revamped $100 bill costs 12.5 cents to produce — a 60% increase over the 7.8 cents it cost to print the older version of the bill. The government has printed 3.5 billion of the new $100 bills, which it began delivering to financial institutions Tuesday. How soon customers will see the new bills depends on their distance from a regional Fed office, demand, and a few other factors. Among the reasons it’s more expensive than the older currency: Its new security features, which help prevent counterfeiting." Continue reading

Continue ReadingNew $100 bill costs 60% more to produce

MasterCard joining push for fingerprint ID standard

"MasterCard is joining the FIDO Alliance, signaling that the payment network is getting interested in using fingerprints and other biometric data to identify people for online payments. MasterCard will be the first major payment network to join FIDO. The Alliance is developing an open industry standard for biometric data such as fingerprints to be used for identification online. The goal is to replace clunky passwords and take friction out of logging on and purchasing using mobile devices. Google is part of the Alliance, and devices running Google's Android operating system will have fingerprint sensors by next year." Continue reading

Continue ReadingMasterCard joining push for fingerprint ID standard