HSBC Bank, one of the largest banking and financial services organizations in the world, on Tuesday confirmed it suffered a data breach last month, which it believes affected less than 1% of its bank customers in the U.S. . In a Notice of Data Breach to customers, which has been filed with California’s Attorney General’s office, the bank says: “HSBC became aware of online accounts being accessed by unauthorized users between October 4, 2018 and October 14, 2018. The link for this article located at TechWorm is no longer available. . The Bank of America disclosed a recent cybersecurity incident involving client accounts. Discover the details of the incident and how it affects account holders.. HSBC Data Breach, Online Account Access, Financial Incident, Data Protection. . LinuxSecurity.com Team
Fiserv, Inc., a major provider of technology services to financial institutions, just fixed a glaring weakness in its Web platform that exposed personal and financial details of countless customers across hundreds of bank Web sites, KrebsOnSecurity has learned. . Brookfield, Wisc.-based Fiserv [NASDAQ:FISV] is a Fortune 500 company with 24,000 employees and $5.7 billion in earnings last year. Its account and transaction processing systems power the Web sites for hundreds of financial institutions — mostly small community banks and credit unions. The link for this article located at Krebs on Security is no longer available. . Fiserv has taken steps to rectify a crucial vulnerability in its online system that jeopardized sensitive client information for various financial institutions.. Fiserv, Financial Technology, Data Exposure, Web Security, Customer Data Protection. . LinuxSecurity.com Team
VOIP's anonymous nature may be convenient, but it can also be used against you. Secure Computing today warned of a new phishing exploit on the loose -- dubbed "vishing" -- that uses voice-over-IP and good old-fashioned social engineering. . Santa Barbara Bank & Trust and PayPal were the first to fall prey to vishing, where an attacker telephones a credit-card customer automatically, with a war dialer or directly, and dupes him or her into revealing account information by claiming there's been fraudulent activity on their account. The victim is then instructed to dial a "bad" phone number that then prompts them to enter their account number. The link for this article located at Dark Reading is no longer available. . Vishing, or voice phishing, is a sneaky tactic using VoIP to trick individuals into revealing sensitive information through social engineering techniques. VOIP Security, Phishing Techniques, Social Engineering Strategies. . LinuxSecurity.com Team
Encrypting data that passes over the Internet from customers to e-commerce sites is a good thing. But it's not necessarily enough. In fact, personal data used in online transactions is often encrypted at the least significant time. . . .. Encrypting data that passes over the Internet from customers to e-commerce sites is a good thing. But it's not necessarily enough. In fact, personal data used in online transactions is often encrypted at the least significant time. Virtually all cases of credit card theft happen when a malicious hacker gains access to an e-commerce site's server, and is then able to access the database that contains customer information -- which by then is often unencrypted and exposed. The link for this article located at Wired is no longer available. . Robust authentication is crucial, yet it cannot solely safeguard user information during digital exchanges.. Ecommerce Security, Data Encryption, Online Protection, Customer Safeguards, Secure Transactions. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.