Personal tools
You are here: Home wikidblog Phishing target one-time passwords - in Swedish
« August 2008 »
Mo Tu We Th Fr Sa Su
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Recent comments
Re:Security and Oil admin Apr 25, 2008
Re:Security and Oil Paul feet Apr 24, 2008
Re:100% open source admin Apr 22, 2008
Re:100% open source Adam Apr 22, 2008
Re:Capital Gains Tax Rates and Entrepreneurs Lance Oct 23, 2007
 

Phishing target one-time passwords - in Swedish

Just when I thought the nordic countries would be the last to be phished, the phishers strike. Out-law pointed out an this F-Secure post (go to the bottom of the page):
Last night an unknown party launched a large-scale attack against Nordea Sweden. Nordea is the largest bank in Nordic countries. It also operates one of the largest internet banks in the world, with over 4 million internet customers in eight countries.

Basically this was a normal phishing scam: somebody spammed a large amount of spoofed emails with links pointing to a fake bank. What made it different was two things:
1. The phishing emails were in Swedish
2. Nordea operates a one-time password system
It doesn't sound like it was an automated MITM attack - the bank uses pre-printed scratch sheets - but that will be sure to follow. Mutual authentication will be paramount for online banking in the very near future.

The URL to Trackback this entry is:
http://www.wikidsystems.com/WiKIDBlog/66/tbping
Add comment

You can add a comment by filling out the form below. Plain text formatting. Comments and Trackbacks are moderated.

(Required)
(Required)
(Required)
(Required)
This helps us prevent automated spamming.