|
|
#1 |
|
Someone tried to take £33,000 from my account
Hello guys.
Just had an interesting phone call with Santander, a UK bank. Someone tried to transfer £33,000 (about $50,000) from my bank account on the 26th January. ![]() Luckily the bank caught it and blocked the transfer. (I have nowhere near that much in the account!) After speaking with the Fraud Dept, it appears that someone was able to copy my internet banking logon, logged onto my account and tried to do the transfer to another UK account. I only log onto my internet banking on my laptop, via an up to date Chrome, and only at home or work. The password details are kept in 1password. So how did whoever it was get my details? (ps I never click on a Santander link in an email) |
|
|
|
0
|
|
|
#3 |
|
Could be an inside job or key-logging software.
__________________
15" MBP Core i7 | 27" ACD | AEBS | 5G iPod | iPhone 5 | 3G Apple TV | iPad mini Last edited by daneoni; Feb 11, 2013 at 10:09 AM. |
|
|
|
0
|
|
|
#4 |
|
There must be some rich people who don't miss 50k when it comes out of their bank, not sure why they would try for such a large amount
|
|
|
|
0
|
|
|
#5 | |
|
Quote:
![]()
__________________
Two things are infinite, the universe and human stupidity; and I'm not sure about the universe. -- Albert Einstein |
||
|
|
1
|
|
|
#6 |
|
Santander are a Spanish bank.
|
|
|
|
1
|
|
|
#7 |
|
They are a spanish bank but they also have banks in England..
__________________
Macbook, Mac Mini, Iphone 3GS (Waiting for Iphone 4.0)
|
|
|
|
0
|
|
|
#8 |
|
|
0
|
|
|
#9 |
|
Don't you need some sort of additional and unique Tan number (not sure how you call it) or other pin to confirm any transaction?
|
|
|
|
0
|
|
|
#10 | |
|
Quote:
|
||
|
|
0
|
|
|
#11 |
|
I've had the opposite problem. Tried to buy 2 return tickets to LA and an EOS 60D camera in the same month. Had both declined and my card cancelled, had to get a new card!
(I have a debit card, don't know if the rules are different) But I'd rather that happen than someone else taking my money.
__________________
Maybe if everyone who'd ever been close to you had died, you'd be sarcastic, too.
Also come join us Steam users! |
|
|
|
0
|
|
|
#12 |
|
The people who tried to take your money probably tried it on more than one account and they probably got through with one of them .
|
|
|
|
0
|
|
|
#13 | |||
|
Quote:
I never bothered to install java 7 for Mountain Lion. (upgraded to Mountain Lion 2 months ago) Thanks for the hint though - I just now tested for java. No pref-panel, no java utility. After a search, seems I still have java 6 left over from Snow Leopard (never installed Lion). As far as I know, java 6 does not run in Mountain Lion without a bit of tweaking (which I haven't done). Tested in browsers and downloaded a couple of .jar apps. No functionality here. Inside.. hmm. Key-logging - not sure how on OSX - my macbook is pw-protected. Santander took over a british bank, Abbey, a few years ago. I had an account with Abbey, which then became a Santander account. Quote:
Nope. It's my baby and only I use it Belongs to me, not to work. Has a login password and a wake from sleep password (if sleep for more than 1 hour) Quote:
if they had bothered to try a transfer for an amount that I actually had, they might have succeeded. Not sure how without activating an OTP request though.
|
||||
|
|
0
|
|
|
#14 |
|
I'm still not blaming Java but both Java 7 and 6 had recent security holes. Just because Santander doesn't use Java doesn't mean another site you visited wasn't and then installed something which monitored your logins on other sites.
__________________
My 24 hour web cam! |
|
|
|
0
|
|
|
#15 |
|
How complicated is your password? If it's something relatively simple, whoever did it could've brute forced it by trying to log in once or twice a day over a month or two. Just hitting it up enough to keep the failed logins to a bare minimum so as not to raise suspicion.
|
|
|
|
0
|
|
|
#16 | |
|
Quote:
|
||
|
|
0
|
|
|
#17 | |||
|
Quote:
Quote:
Quote:
Code:
https://retail.santander.co.uk/LOGSUK_NS_ENS/BtoChannelDriver.ssobto?dse_operationName=LOGON <form method="post" action="ChannelDriver.ssobto?dse_operationName=LOGON" name="formCustomerID_1" id="formCustomerID_1"> The guy from Santander Fraud suggested I might have entered Santander in Google then clicked on whatever came up and thus gone through a man-in-the-middle attack. I try to avoid doing this but it is possible I might have gone through Google in a distracted moment. Both Chrome and Google have their own malicious website blacklist but it's possible I got taken in in that span between setting up a MITM attack and having it blacklisted. |
||||
|
|
0
|
|
|
#18 |
|
If you said, I missed it, but have you ever logged on to your bank from somewhere other than your own secure wifi? A friend had a password hijacked when he was using public wifi while on a trip
|
|
|
|
0
|
|
|
#19 |
|
Check the phone# listed on your account that they send the OTP to. If it is correct then the bank itself was hacked and/or it's an internal job.
You said you needed an OTP to transfer these kinds of funds. If the bank intercepted the transfer, it means someone had the OTP. And if it wasn't actually sent to you then it was internal. And if it was internal then there was nothing you could have done to prevent it. A bank will never admit it was internally compromised. Which means that they have to make you believe it was something to do with you, without maybe ever actually accusing you of negligence. But if someone got your OTP, then it was internal. I assume the bank will send an email to you when it detects a change in your security settings? One of those "If you did this, then you need do nothing - and if you didn't do this then someone else has on your behalf..." Then you sign in to check the security settings *not* using the link provided of course.
__________________
My friends, love is better than anger. Hope is better than fear. Optimism is better than despair. So let us be loving, hopeful and optimistic. And we'll change the world. - Jack Layton |
|
|
|
0
|
![]() |
|
«
Previous Thread
|
Next Thread
»
| Thread Tools | Search this Thread |
| Display Modes | |
|
|
All times are GMT -5. The time now is 10:08 PM.









Belongs to me, not to work. Has a login password and a wake from sleep password (if sleep for more than 1 hour)
if they had bothered to try a transfer for an amount that I actually had, they might have succeeded. Not sure how without activating an OTP request though.
Linear Mode
