trihub Sergeant
Joined: 04 Dec 2006
Posts: 180
|
Posted: Thu Aug 27, 2009 1:53 pm Post subject: WHID 2009-29: FBI & Secret Service warn of a sophisticat |
|
|
Source: http://www.xiom.com/whid/blog
A very interesting report by the FBI together with the US Secret service outlines a scheme exploiting SQL injection to steal credit card information from financial institutes. The attack involves directly attacking HSMs, the banks key vaults in charge of verifying ATM PINs in order to brute force PIN numbers.
The report is unique in describing an attack on financial services. Such attacks are know to happen but are seldom reported, certainly not with the amount of details in this report. However, the report does not indicate which incident it is based on. Is the close proximity of the report release to the Heartland incident just a coincidence?
Getting to this report took some effort and the only non blogshpere copy we found is on the Visa web site. If you know anything about this incident, please help us complete the information by leaving a comment on contacting us. |
|