InsuranceHeadline.com Home Headline Home Searh Insurance Directory Listings by State, City Zip Code or Detailed Keyword Search! Search News  Company IndexPost NewsPost News  Add Your Listings to The Insurance Phone Book! Advertise Manage Insurance Phone Book Directory ListingsEditor Login

Insurance Headlines - Insurance Headlines.com is the premier online news source that insurance & financial professional rely on - making Insurance Headlines.com the top choice for syndicating news on the world wide web.

Headline News | Life & Health | Property & Casualty | Financial & Investments | Banks & Thrifts | Syndicate News

1
Home L&H P&C F&I Post Feeds RSS Search

    


 Free Insurance & Financial Headline Newsletters - Subscribe Today!

Choose Newsletters

Daily Headlines

Weekly Headlines

Product Promo's

Job Offers

Enter Your E-mail

Advertising Options

Post Press Releases

Post Insurance Articles

Online Advertising

Newsletter Advertising

Company Sponsors

Resources

Insurance Newsletters

Company News & Stocks

Syndicate News

Sponsor Links

Industry Links

Archive
Su Mo Tu We Th Fr Sa
 1  2
 3  4  5  6  7  8  9
 10  11  12  13  14  15  16
 17  18  19  20  21  22  23
 24  25  26  27  28  29  30

1




 

See your advertisement here

Virtual keypads vulnerable to snoops

by MSNBC.com - Sep 20,2006

'Trojan horse' programs can foil online banking password-entry systems

In hopes of fighting Internet fraud, some online banking sites make customers use "virtual keypads" — a method of entering passwords on the screen, generally with a mouse.

The system is designed to thwart keystroke-logging programs that capture everything a user types. Now those virtual keypads appear just as vulnerable to snoops.

A Spanish security company, Hispasec Systems, has revealed details of "Trojan horse" programs that can capture video imagery of an unsuspecting person's computer use. If the user enters a PIN on a bank's virtual keypad, the dastardly program is a witness.

Like most Trojan horses, the ones detected by Hispasec are slipped onto users' computers when they visit certain Web sites, often through spam links, said Hispasec researcher Bernardo Quintero. Often you'd have no clue if you were hit. When Quintero's group tested whether more than 30 anti-virus programs would block a recent video-logging Trojan, only six did so.

Gartner Inc. security analyst Avivah Litan said screen-capture programs that attacked virtual keypads emerged as early as 2003, when banks in Brazil fell prey. She said the technique has remained relatively rare because the programs consume a lot of bandwidth and storage, and there have tended to be a lot of easier targets.

But that may be changing. Quintero said Wednesday that a newly detected Trojan combines keystroke-logging and video-capture functions — and instead of recording the entire screen, the program just grabs images of the immediate area near where the user clicks the mouse. The spy receives a smaller file, making the attack easier to pull off.

All this points to an enduring security truth: No single measure — especially one that is apparent to fraud artists — is likely to guarantee safety.

Litan says banks would be wise to focus more resources on behind-the-scenes software that can analyze Web banking sessions to gauge their legitimacy.

"Banks should stop implementing patchwork solutions and get it right the first time," she said.

_______________________________________________________________

By Brian Bergstein
The Associated Press

© 2006 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.

© 2006 MSNBC.com

 

Related news
New Trojan Intercepts Online Banking Information by PCWorld posted on Jan 15,2008
Japanese Insurance Provider Implements NICE's VoIP Solutions by Tmcnet.com posted on Oct 19,2006
Fiserv's CheckFree lets consumers scan cheques at home to deposit in accounts by MSN.com posted on Feb 07,2008
AOL to Offer AIG's ID Theft, Computer Coverage to Subscribers for Free by AP-News posted on Sep 13,2006
RSA Security in $48m Web Banking ID Takeover by Red-Orbit- posted on Apr 25,2006
About Four in Ten Full-Time Workers Unprotected by Disability Insurance; Singles and Young Families May Be Especially Vulnerable by Business-Wire posted on May 05,2008
NAMIC: Bill to Phase-out Federal Subsidies for Certain Flood-vulnerable Homes is ‘Common-Sense Solution’ to National Flood Program’s Woes by NAMIC posted on Nov 01,2007
Peak Performance Offers a Virtual Insurance Policy Administration Solution for ``Customer to Carrier Processing''; Peak Performance Provides a Comprehensive, Revolutionary Solution Offering Carriers Full Automation of Insurance Program Administration by Business-Wire posted on May 30,2006
Did you enjoy this article? (total 0 votes)
   

Comments (0 posted) 


Headline Sponsors

Sponsor


Insurance Headlines - Insurance Headlines.com is the premier online news source that insurance & financial professional rely on - making Insurance Headlines.com the top choice for syndicating news on the world wide web.

Copyright© 2005-2007 Insurance Syndication, LLC

Powered by: InsuranceHeadlines.com

Free Link Exchange - Directory - SQL Database Hosting - Insurance PhoneBook

About Us | Privacy Policy | Terms & Conditions | Free Newsletters | Free News Feeds | Advertise | Company Sponsors | Insurance Links | Industry Links