Suspected reprisal for US sanctions resulted in gigabytes of stolen account data.
Read the whole story
Read the whole story
It's the customers I empathise with. Identity theft on the rise soon?[url=http://meincmagazine.com/civis/viewtopic.php?p=27478619#p27478619:b08c30tg said:
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478581#p27478581:mtt426m9 said:dlux[/url]":mtt426m9]Gee, shouldn't the National Security Agency be aware of this sort of activity, or are they too busy collecting all our phone call data?
If they aren't tracking a breach like this then how the fuck are they supposed to prevent a terrorist attack?
It's always hard to predict an enemy that drinks that much vodka.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478581#p27478581:3bg95ilm said:dlux[/url]":3bg95ilm]Gee, shouldn't the National Security Agency be aware of this sort of activity, or are they too busy collecting all our phone call data?
If they aren't tracking a breach like this then how the fuck are they supposed to prevent a terrorist attack?
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478705#p27478705:3hyw83yu said:Mujokan[/url]":3hyw83yu]It's always hard to predict an enemy that drinks that much vodka.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478581#p27478581:3hyw83yu said:dlux[/url]":3hyw83yu]Gee, shouldn't the National Security Agency be aware of this sort of activity, or are they too busy collecting all our phone call data?
If they aren't tracking a breach like this then how the fuck are they supposed to prevent a terrorist attack?
I don't always drink vodka, but when I do, I prefer Chase.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478761#p27478761:3ls5khq2 said:diarrheajim[/url]":3ls5khq2][url=http://meincmagazine.com/civis/viewtopic.php?p=27478705#p27478705:3ls5khq2 said:Mujokan[/url]":3ls5khq2]It's always hard to predict an enemy that drinks that much vodka.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478581#p27478581:3ls5khq2 said:dlux[/url]":3ls5khq2]Gee, shouldn't the National Security Agency be aware of this sort of activity, or are they too busy collecting all our phone call data?
If they aren't tracking a breach like this then how the fuck are they supposed to prevent a terrorist attack?
Who, Chase?
The NYT article doesn't say either, but links to a Bloomberg article I didn't bother to read.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478861#p27478861:1g4ulrs1 said:RickyP784[/url]":1g4ulrs1]I know this is a regurgitation of a NY Times article, so details are scant. I do wonder which other 4 banks were affected. I'd like to know if mine was one of them.
...and at least four other banks was the work of state-sponsored hackers from Russia.
Russian hackers attacked the U.S. financial system in mid-August, infiltrating and stealing data from JPMorgan Chase & Co. (JPM) and at least one other bank
Because "our major financial institutions were hacked by a foreign government" is less upsetting than "some random kid stole all our account information". Plus, Russia has fairly recently shifted from "Moderately-friendly neighbor" to "Imperialist scum", so they make a handy scapegoat, I'd assume.[url=http://meincmagazine.com/civis/viewtopic.php?p=27479315#p27479315:20z9y1nm said:Luppe[/url]":20z9y1nm]So the "proof" that Russia is behind this is a couple of earlier attempts, all of them either proven not to be from the Russian government or with proof that are "tenuous at best".
Now, I wouldn't be that surprised if the Russian government where indeed behind it, but why spread the allegations if there is no solid proof whatsoever?
We will update this story as more information becomes available.
Update
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478937#p27478937:1x9n1ueg said:glitchtrack[/url]":1x9n1ueg]An obvious, if clueless, question: as a customer of Chase, are there steps I should be taking to protect myself? And exactly what sort of account information was stolen, anyway? I know the article says Chase hasn't seen an increase in fraud levels, but it's hard for me to discount the possibility that the information taken during this attack might still be used for fraudulent purposes in the future...
Not at all. They would comp you if you were the victim of fraud. It's more important that it happened actually.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480029#p27480029:omx0iet2 said:FlibberyGiveit[/url]"mx0iet2]
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478937#p27478937:omx0iet2 said:glitchtrack[/url]"mx0iet2]An obvious, if clueless, question: as a customer of Chase, are there steps I should be taking to protect myself? And exactly what sort of account information was stolen, anyway? I know the article says Chase hasn't seen an increase in fraud levels, but it's hard for me to discount the possibility that the information taken during this attack might still be used for fraudulent purposes in the future...
My question also. I suppose I care that it happened, but I /really/ care about how it effects my credit accounts with Chase.
Yes/no/maybe. It's complicated.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480005#p27480005:1k2nhk3e said:core_dump[/url]":1k2nhk3e] I wonder if Americans perceive Russia as an enemy?
Until about 6 months ago? No. Russians were those goofy fearless folks who drink lots of Vodka.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480005#p27480005:3evqkc8s said:core_dump[/url]":3evqkc8s]As a non American, I wonder if Americans perceive Russia as an enemy? Just wondering...
[url=http://meincmagazine.com/civis/viewtopic.php?p=27480107#p27480107:3e76u1u2 said:dlux[/url]":3e76u1u2]Yes/no/maybe. It's complicated.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480005#p27480005:3e76u1u2 said:core_dump[/url]":3e76u1u2] I wonder if Americans perceive Russia as an enemy?
[url=http://meincmagazine.com/civis/viewtopic.php?p=27480191#p27480191:fyxto8de said:Dilbert[/url]":fyxto8de]
...those goofy fearless folks who drink lots of Vodka...
[url=http://meincmagazine.com/civis/viewtopic.php?p=27479841#p27479841:8fmswsqu said:Zoolook[/url]":8fmswsqu]Bank employees should not be able to open ZIP files or any executable sent from external email addresses - especially unverified ones. Lock it down.
We cannot do that here.
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478733#p27478733:3cjnb2vo said:cdclndc[/url]":3cjnb2vo]I used to laugh at my grandfather because he was old school and kept his money stashed away in his mattress. Used to......
I know a lot of us mistrust banks and the fed, but this sort of thing doesn't happen in reality, at least not in the US. We have plenty of other problems with them without making things up.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480515#p27480515:3a41zu5b said:Kin24[/url]":3a41zu5b]That doesnt work when banks can steal from you by convincing the government to print a trillion dollars, give it to them for free...
[url=http://meincmagazine.com/civis/viewtopic.php?p=27480561#p27480561:1np11ss2 said:dlux[/url]":1np11ss2]I know a lot of us mistrust banks and the fed, but this sort of thing doesn't happen in reality.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480515#p27480515:1np11ss2 said:Kin24[/url]":1np11ss2]That doesnt work when banks can steal from you by convincing the government to print a trillion dollars, give it to them for free...
[url=http://meincmagazine.com/civis/viewtopic.php?p=27479841#p27479841:2ato15ny said:Zoolook[/url]":2ato15ny]Bank employees should not be able to open ZIP files or any executable sent from external email addresses - especially unverified ones. Lock it down.
We cannot do that here.
[url=http://meincmagazine.com/civis/viewtopic.php?p=27480759#p27480759:t7kw1kh4 said:mike_syn[/url]":t7kw1kh4][url=http://meincmagazine.com/civis/viewtopic.php?p=27479841#p27479841:t7kw1kh4 said:Zoolook[/url]":t7kw1kh4]Bank employees should not be able to open ZIP files or any executable sent from external email addresses - especially unverified ones. Lock it down.
We cannot do that here.
It is entirely possible to configure mailservers to reject .zip and .exe (or any other extension) attachments, even if the files are not recognized as hostile by a virus scanner.
[url=http://meincmagazine.com/civis/viewtopic.php?p=27478937#p27478937:2lrhuxq0 said:glitchtrack[/url]":2lrhuxq0]An obvious, if clueless, question: as a customer of Chase, are there steps I should be taking to protect myself? And exactly what sort of account information was stolen, anyway? I know the article says Chase hasn't seen an increase in fraud levels, but it's hard for me to discount the possibility that the information taken during this attack might still be used for fraudulent purposes in the future...
According to one source Ars contacted who claims to be familiar with the investigation at JPMorgan Chase, the attack on the bank stemmed from malware that infected an employee's desktop computer. It was not clear whether the malware was delivered by a web attack or by an email "phishing" attack.
In a statement sent to Ars, John Prisco, CEO of the security firm Triumfant said, "The nature of the JPMorgan breach was a persistent threat with a backdoor that enabled the attacker to enter whenever they wanted." He expressed surprise that the breach went undetected for so long, claiming that it was "fairly easy breach to detect."
[url=http://meincmagazine.com/civis/viewtopic.php?p=27480191#p27480191:1sr58d59 said:Dilbert[/url]":1sr58d59]Until about 6 months ago? No. Russians were those goofy fearless folks who drink lots of Vodka.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480005#p27480005:1sr58d59 said:core_dump[/url]":1sr58d59]As a non American, I wonder if Americans perceive Russia as an enemy? Just wondering...
Now? After everything they've pulled in Ukraine and continue to do so? Maybe. Trending toward yes.
If you're running Exchange 2010 or 2013, use Transport Rules. Here's a list of potentially dangerous filetypes you may want to block.[url=http://meincmagazine.com/civis/viewtopic.php?p=27479841#p27479841:12mjd4st said:Zoolook[/url]":12mjd4st]Bank employees should not be able to open ZIP files or any executable sent from external email addresses - especially unverified ones. Lock it down.
We cannot do that here.
It makes more sense in my book to simply avoid the big banks, and use either a local bank or credit union instead. Black-hats rarely seem to bother with those, and in my experience the service is a hell of a lot better.[url=http://meincmagazine.com/civis/viewtopic.php?p=27478733#p27478733:1zgalu67 said:cdclndc[/url]":1zgalu67]I used to laugh at my grandfather because he was old school and kept his money stashed away in his mattress. Used to......
This exactly. I'd add that the fellow Americans I know don't consider Russians an enemy like past generations did -- we're just increasingly worried that our respective governments are going to turn against one another in a second Cold War or worse.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480205#p27480205:1zgalu67 said:DoomHamster[/url]":1zgalu67][url=http://meincmagazine.com/civis/viewtopic.php?p=27480107#p27480107:1zgalu67 said:dlux[/url]":1zgalu67]Yes/no/maybe. It's complicated.[url=http://meincmagazine.com/civis/viewtopic.php?p=27480005#p27480005:1zgalu67 said:core_dump[/url]":1zgalu67] I wonder if Americans perceive Russia as an enemy?
Yeah...I wouldn't say enemy at all, but I would definitely say that we are nervous about Putin and his most recent antics. But probably no more so than what Europeans are feeling right now...maybe even less so due to our geographical separation.
As dlux said....it's complicated.
"Gee, shouldn't the National Security Agency be aware of this sort of activity, or are they too busy collecting all our phone call data?
If they aren't tracking a breach like this then how the fuck are they supposed to prevent a terrorist attack? "