Online Banking Security

ثبت نشده
چکیده

I nternet banking is increasingly popular both in Norway and elsewhere. Banks have actively encouraged this cost-saving trend by persuading customers to sign up. Customers, attracted by online banking’s convenience, seem largely unconcerned about identity theft and phishing email scams. In fact, most customers seem to believe that Internet banking is quite safe simply because their banks told them so. In reality, this sense of security might be false. We studied customer authentication methods in several Norwegian Internet banks from 2003 through 2004. Our investigation shows that authentication was often weak, offering simple—but powerful—attack possibilities. (Fortunately, none of the attacks were actually carried out.) Here, we discuss the authentication methods and the attacks they made possible. Our scenarios are based solely on publicly available Internet information. Upon concluding our study, we presented our findings to the Norwegian government agency overseeing the national banking industry. We also engaged in a sustained effort to directly inform the banks most vulnerable to attacks. Our main reason for making this account public is to contribute to the development of more secure Internet banking systems. To further that aim, we speculate on why banks have developed insecure Internet banking solutions in the first place. We also suggest how universities might teach students to design more secure alternatives.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Biometric Authentication of Fingerprint for Banking Users, Using Stream Cipher Algorithm

Providing banking services, especially online banking and electronic payment systems, has always been associated with high concerns about security risks. In this paper, customer authentication for their transactions in electronic banking has been discussed, and a more appropriate way of using biometric fingerprint data, as well as encrypting those data in a different way, has been suggest...

متن کامل

Online Banking in Bangladesh An Empirical Analysis

Advances in electronic banking technology have created novel ways of handling daily banking affairs, especially via the online banking channel. The acceptance of online banking services has been rapid in many parts of the world. In the leading e-banking countries the number of ebanking contracts has exceeded 50 percent. This study investigates into online banking acceptance in the light of the ...

متن کامل

Online Banking Security Analysis based on STRIDE Threat Model

This paper refers important issues regarding how to evaluate the security threats of the online banking effectively, a system threat analysis method combining STRIDE threat model and threat tree analysis is proposed, which improves the efficiency of the threat analysis greatly and also has good practicability. By applying this method to the online banking system threat analysis, we construct ST...

متن کامل

An Analysis of the Online Banking Security Issues Reported by Hole, Moen, and Tjostheim

Online Banking has become increasingly popular globally, because it is so easy and convenient for Internet users to manage their bank accounts from anywhere of the world at any time. Banks have encouraged for this trend for years, since Online Banking also saves lots of resources for the banks regarding of staff training, investment for ATMs and branches, and other operations costs. The Interne...

متن کامل

Electronic Commerce, Automation and Online Banking in Nigeria: Challenges and Benefits

Electronic banking has been around for some time in the form of automatic teller machines and telephone transactions but with the advent of internet, more publicity has been witnessed. This issue of internet has equally given a new look to their transactions and mode of product delivery in banking services for the benefits of both the customers and the banks. The objective of this paper is to f...

متن کامل

User-Centric Security in Online Banking A Literature Review

This paper is a review of existing literature on the topic of user-friendliness in online banking security systems. The research presented herein seeks to promote critical thought on finding the most effective immediate steps online banks can take to better protect their customers, given what is currently understood about how users perceive and interact with online security systems.

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010