<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Buried Warning Signs</title>
	<atom:link href="http://krebsonsecurity.com/2010/01/buried-warning-signs-2/feed/" rel="self" type="application/rss+xml" />
	<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/</link>
	<description>In-depth security news and investigation</description>
	<lastBuildDate>Wed, 23 May 2012 01:40:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>By: Cyber Crooks Leave Traditional Bank Robbers in the Dust &#8212; Krebs on Security</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-3436</link>
		<dc:creator>Cyber Crooks Leave Traditional Bank Robbers in the Dust &#8212; Krebs on Security</dc:creator>
		<pubDate>Tue, 09 Mar 2010 06:44:56 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-3436</guid>
		<description>[...] was a story about how much time and effort I put into trying to get the government to acknowledge how much cyber crooks were stealing from small to mid-sized businesses last year in these online banking attacks. Given this latest disclosure, it&#8217;s not hard to see [...]</description>
		<content:encoded><![CDATA[<p>[...] was a story about how much time and effort I put into trying to get the government to acknowledge how much cyber crooks were stealing from small to mid-sized businesses last year in these online banking attacks. Given this latest disclosure, it&#8217;s not hard to see [...]</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-3436" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('3436', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-3436-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-3436" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('3436', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-3436-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: China, Google and Web Security - The HP Security Laboratory Blog -</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-433</link>
		<dc:creator>China, Google and Web Security - The HP Security Laboratory Blog -</dc:creator>
		<pubDate>Fri, 15 Jan 2010 22:29:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-433</guid>
		<description>[...] bloc are directed at massive monetary gain - probably in the area of tens of millions of dollars [5]. China appears hell bent on stealing state secrets and intellectual property from both governments [...]</description>
		<content:encoded><![CDATA[<p>[...] bloc are directed at massive monetary gain &#8211; probably in the area of tens of millions of dollars [5]. China appears hell bent on stealing state secrets and intellectual property from both governments [...]</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-433" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('433', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-433-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-433" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('433', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-433-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: M Henri Day</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-339</link>
		<dc:creator>M Henri Day</dc:creator>
		<pubDate>Wed, 13 Jan 2010 15:21:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-339</guid>
		<description>Brian, I hope that your new situation will permit you to be more outspoken than you were able to be when writing for the Washington Post, but at the same time that your articles will continue to be characterised by the careful research they have been known for in the past....

Henri</description>
		<content:encoded><![CDATA[<p>Brian, I hope that your new situation will permit you to be more outspoken than you were able to be when writing for the Washington Post, but at the same time that your articles will continue to be characterised by the careful research they have been known for in the past&#8230;.</p>
<p>Henri</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-339" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('339', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-339-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-339" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('339', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-339-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: BrianKrebs</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-148</link>
		<dc:creator>BrianKrebs</dc:creator>
		<pubDate>Wed, 06 Jan 2010 16:02:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-148</guid>
		<description>Also, as some of you have already figured out, the comments on this blog are threaded, so feel free to reply to someone else&#039;s comment instead of simply plopping a comment into the &quot;submit comment&quot; box at the bottom of the page.</description>
		<content:encoded><![CDATA[<p>Also, as some of you have already figured out, the comments on this blog are threaded, so feel free to reply to someone else&#8217;s comment instead of simply plopping a comment into the &#8220;submit comment&#8221; box at the bottom of the page.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-148" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('148', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-148-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-148" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('148', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-148-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: BrianKrebs</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-147</link>
		<dc:creator>BrianKrebs</dc:creator>
		<pubDate>Wed, 06 Jan 2010 16:00:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-147</guid>
		<description>Great to see such a great discussion building on this topcic. I pasted this -- sent from a reader via e-mail -- in the comments section for another blog post on this site, but thought it probably also belongs here. 
—

I have read your column for many years and have always found you to be factual and on the cutting edge of cyber crime trends. I worked for an online financial services company for more than a decade. I was in their corporate security investigations group. I was the senior manager of investigations from late 2005 until I left and worked directly with law enforcement on the types of cases you have written about so well.

My group investigated all fraud activity perpetrated against it and I can tell you we dealt with the Russian or as we told everyone “Eastern European” groups since 2003. They started small by opening accounts with stolen identities and funding via ACH and experimented with stock pump and dump as early as December 2003. Our firm lost less then a million dollars in 2004 to ACH, wire fraud and pump and dump and a couple of million in 2005, but we fully reimbursed customers because of what it could do to our business if it became public. We had compromised customers sign a general release/non-disclosure form to protect our reputation. We also had these customers send us their hard drives or we performed remote diagnostics and as a result were highly familiar with the viruses and how credentials were being stolen. We referred all of these cases to law enforcement and I worked directly with different FBI and Secret Service agents on many of these cases. We also participated in Secret Service Electronic Crime Task force groups around the country during this time frame of 04/05.

2006 changed the course of history, as my firm lost more money between July and September then we had between 2001-June 2006, when we lost over $10 million. It was a result of pump and dump, as well as wire and ACH fraud. Of course this impacted everyone in the online brokerage business, but we were on the bleeding edge. As you well know, RBN and others learn quickly and they used all of the knowledge and skills they had accumulated over the past several years and they came at us hard and fast. We had founded a working group with NCFTA in Pittsburgh and had quarterly meetings to share all of this information and we also began sharing information directly via email within our working group real time to help combat this activity. It helped to slow it down, but we were never able to stop it.

The “bad guys” continue to evolve and your articles have well documented how this evolution is continuing. They still hit individual accounts at banks and brokerages, but the bigger targets are now small business and local governments.

Keep up the good work and hopefully you can bring more attention to this growing problem.</description>
		<content:encoded><![CDATA[<p>Great to see such a great discussion building on this topcic. I pasted this &#8212; sent from a reader via e-mail &#8212; in the comments section for another blog post on this site, but thought it probably also belongs here.<br />
—</p>
<p>I have read your column for many years and have always found you to be factual and on the cutting edge of cyber crime trends. I worked for an online financial services company for more than a decade. I was in their corporate security investigations group. I was the senior manager of investigations from late 2005 until I left and worked directly with law enforcement on the types of cases you have written about so well.</p>
<p>My group investigated all fraud activity perpetrated against it and I can tell you we dealt with the Russian or as we told everyone “Eastern European” groups since 2003. They started small by opening accounts with stolen identities and funding via ACH and experimented with stock pump and dump as early as December 2003. Our firm lost less then a million dollars in 2004 to ACH, wire fraud and pump and dump and a couple of million in 2005, but we fully reimbursed customers because of what it could do to our business if it became public. We had compromised customers sign a general release/non-disclosure form to protect our reputation. We also had these customers send us their hard drives or we performed remote diagnostics and as a result were highly familiar with the viruses and how credentials were being stolen. We referred all of these cases to law enforcement and I worked directly with different FBI and Secret Service agents on many of these cases. We also participated in Secret Service Electronic Crime Task force groups around the country during this time frame of 04/05.</p>
<p>2006 changed the course of history, as my firm lost more money between July and September then we had between 2001-June 2006, when we lost over $10 million. It was a result of pump and dump, as well as wire and ACH fraud. Of course this impacted everyone in the online brokerage business, but we were on the bleeding edge. As you well know, RBN and others learn quickly and they used all of the knowledge and skills they had accumulated over the past several years and they came at us hard and fast. We had founded a working group with NCFTA in Pittsburgh and had quarterly meetings to share all of this information and we also began sharing information directly via email within our working group real time to help combat this activity. It helped to slow it down, but we were never able to stop it.</p>
<p>The “bad guys” continue to evolve and your articles have well documented how this evolution is continuing. They still hit individual accounts at banks and brokerages, but the bigger targets are now small business and local governments.</p>
<p>Keep up the good work and hopefully you can bring more attention to this growing problem.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-147" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('147', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-147-up" style="font-size:14px; color:#009933;">3</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-147" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('147', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-147-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: infosec_pro</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-146</link>
		<dc:creator>infosec_pro</dc:creator>
		<pubDate>Wed, 06 Jan 2010 15:31:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-146</guid>
		<description>@AlphaCentauri - having worked for a big bank I must disagree.  Customers are a big part of the problem but not the biggest, the biggest is that banks pander to them in the interest of profits.  Customers want convenience and security, banks sacrifice security for convenience.  Customers only circumvent safety features when those features are ill designed and onerous.  It is possible to provide both convenience and security, but it comes at a cost and with a lot of effort, and banks will not invest either of those.  It&#039;s easier to blame the customers and pass the costs along to them whenever possible.</description>
		<content:encoded><![CDATA[<p>@AlphaCentauri &#8211; having worked for a big bank I must disagree.  Customers are a big part of the problem but not the biggest, the biggest is that banks pander to them in the interest of profits.  Customers want convenience and security, banks sacrifice security for convenience.  Customers only circumvent safety features when those features are ill designed and onerous.  It is possible to provide both convenience and security, but it comes at a cost and with a lot of effort, and banks will not invest either of those.  It&#8217;s easier to blame the customers and pass the costs along to them whenever possible.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-146" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('146', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-146-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-146" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('146', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-146-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: infosec_pro</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-145</link>
		<dc:creator>infosec_pro</dc:creator>
		<pubDate>Wed, 06 Jan 2010 15:26:18 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-145</guid>
		<description>@mccxxiii - I worked for a bank that was then in the top fifty and is now one of the top twenty or so (couple of mergers) - I doubt there is much difference between the big guys and the major regionals, even the big players outsource much of the processing to specialist service providers.  They are all probably more secure than you are, which is not saying a great deal with the spate of Adobe zero-days and the state of the art in drive-by exploits and such.  Personally, I access my accounts online only from my work desktop in a highly secured (.gov) network for which I am responsible for security - I don&#039;t think it&#039;s safe from attackers, just that the attackers are after bigger things than my penny ante bankroll, and also that attacks will be detected and mitigated very quickly so my exposure will be limited - and I would not access financial accounts from a home PC or any less secure environment.</description>
		<content:encoded><![CDATA[<p>@mccxxiii &#8211; I worked for a bank that was then in the top fifty and is now one of the top twenty or so (couple of mergers) &#8211; I doubt there is much difference between the big guys and the major regionals, even the big players outsource much of the processing to specialist service providers.  They are all probably more secure than you are, which is not saying a great deal with the spate of Adobe zero-days and the state of the art in drive-by exploits and such.  Personally, I access my accounts online only from my work desktop in a highly secured (.gov) network for which I am responsible for security &#8211; I don&#8217;t think it&#8217;s safe from attackers, just that the attackers are after bigger things than my penny ante bankroll, and also that attacks will be detected and mitigated very quickly so my exposure will be limited &#8211; and I would not access financial accounts from a home PC or any less secure environment.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-145" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('145', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-145-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-145" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('145', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-145-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Lynda</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-141</link>
		<dc:creator>Lynda</dc:creator>
		<pubDate>Wed, 06 Jan 2010 05:44:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-141</guid>
		<description>I just did a quick bit of googling, and came up with a yahoo rendition of the WSJ article.  There are several others, quoting the WSJ, along with a denial of the incident by Citi.

Also worth noting is a 60 Minutes report, available on the web - episode 11/08/09.  While it mostly focuses on vulnerabilities to our infrastructure there is an interview with the FBI  re some attacks against banking.  

Ironically, the episode begins with a Viagra add.  (Imagine me, rolling my eyes.)</description>
		<content:encoded><![CDATA[<p>I just did a quick bit of googling, and came up with a yahoo rendition of the WSJ article.  There are several others, quoting the WSJ, along with a denial of the incident by Citi.</p>
<p>Also worth noting is a 60 Minutes report, available on the web &#8211; episode 11/08/09.  While it mostly focuses on vulnerabilities to our infrastructure there is an interview with the FBI  re some attacks against banking.  </p>
<p>Ironically, the episode begins with a Viagra add.  (Imagine me, rolling my eyes.)</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-141" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('141', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-141-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-141" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('141', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-141-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: bruce</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-139</link>
		<dc:creator>bruce</dc:creator>
		<pubDate>Wed, 06 Jan 2010 05:35:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-139</guid>
		<description>This &#039;enhanced&#039; message number occurs quite frequently, as I see it all the time.

Thanks Brian for explaining how it can occur.</description>
		<content:encoded><![CDATA[<p>This &#8216;enhanced&#8217; message number occurs quite frequently, as I see it all the time.</p>
<p>Thanks Brian for explaining how it can occur.</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-139" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('139', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-139-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-139" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('139', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-139-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
	<item>
		<title>By: Rick</title>
		<link>http://krebsonsecurity.com/2010/01/buried-warning-signs-2/comment-page-1/#comment-136</link>
		<dc:creator>Rick</dc:creator>
		<pubDate>Wed, 06 Jan 2010 02:55:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.krebsonsecurity.com/?p=206#comment-136</guid>
		<description>&#039;banks are deathly afraid of anything that would cause businesses and/or consumers to lose confidence in online banking&#039;

LOL Sorry but what confidence is there to lose? That&#039;s funny.

&#039;The banks realize such huge savings from having people bank online that they just can’t afford to go back&#039;

So they swallow the losses as always. We know this to be true. You can hack a bank and they&#039;ll rarely mention it. A lot of companies work this way with fraud what I can tell - and they&#039;re also afraid other wannabe hackers will understand how easy it is to take money from them. So they just swallow the losses.

What a weird world.

&#039;Between June and December 2009, I wrote more than two dozen articles for The Washington Post about this type of fraud&#039;

Yes we know. They were great articles.

&#039;Nearly all lost tens of thousands of dollars, all because of a single virus infection.&#039;

What a surprise. ;)

&#039;Unfortunately, most continue to disavow any responsibility for the losses.&#039;

Ditto. ;)

&#039;I will continue to write about this type of crime in 2010, and to dig deeper into the security weaknesses that allow this form of cyber crime to flourish.&#039;

Yes please do. Bob McMillan&#039;s already been over and praised this site. I think it&#039;s very important as the Internet continues to mature. I really like this site!

I agree with JR.

&#039;All I can say is keep at it. There aren’t any others that I know of that are working on this type of story.&#039;</description>
		<content:encoded><![CDATA[<p>&#8216;banks are deathly afraid of anything that would cause businesses and/or consumers to lose confidence in online banking&#8217;</p>
<p>LOL Sorry but what confidence is there to lose? That&#8217;s funny.</p>
<p>&#8216;The banks realize such huge savings from having people bank online that they just can’t afford to go back&#8217;</p>
<p>So they swallow the losses as always. We know this to be true. You can hack a bank and they&#8217;ll rarely mention it. A lot of companies work this way with fraud what I can tell &#8211; and they&#8217;re also afraid other wannabe hackers will understand how easy it is to take money from them. So they just swallow the losses.</p>
<p>What a weird world.</p>
<p>&#8216;Between June and December 2009, I wrote more than two dozen articles for The Washington Post about this type of fraud&#8217;</p>
<p>Yes we know. They were great articles.</p>
<p>&#8216;Nearly all lost tens of thousands of dollars, all because of a single virus infection.&#8217;</p>
<p>What a surprise. <img src='http://krebsonsecurity.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>&#8216;Unfortunately, most continue to disavow any responsibility for the losses.&#8217;</p>
<p>Ditto. <img src='http://krebsonsecurity.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>&#8216;I will continue to write about this type of crime in 2010, and to dig deeper into the security weaknesses that allow this form of cyber crime to flourish.&#8217;</p>
<p>Yes please do. Bob McMillan&#8217;s already been over and praised this site. I think it&#8217;s very important as the Internet continues to mature. I really like this site!</p>
<p>I agree with JR.</p>
<p>&#8216;All I can say is keep at it. There aren’t any others that I know of that are working on this type of story.&#8217;</p>
<div class="CommentRating">Like or Dislike: <img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-136" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('136', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_');" title="Thumb up" /> <span id="karma-136-up" style="font-size:14px; color:#009933;">0</span>&nbsp;<img style="padding: 0px; margin: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-136" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating-pro/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('136', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating-pro/', '1_16_')" title="Thumb down" /> <span id="karma-136-down" style="font-size:14px; color:#990033;">0</span></div>]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached (User agent is rejected)
Database Caching 1/17 queries in 0.004 seconds using memcached
Object Caching 958/962 objects using memcached

Served from: krebsonsecurity.com @ 2012-05-22 23:37:10 -->
