Things to keep in mind while e-banking

Started by Kalyan, Feb 04, 2009, 09:34 AM

Previous topic - Next topic

Kalyan

Things to keep in mind while e-banking

Tips to protect your bank accounts during e-banking.

Phishing morphs into more advanced versions

In a twist to the recent spate of money transfer frauds committed via internet, you now don't need to provide your password in reply to an unsolicited mail. A hacker could still be able to crack your email ID and access sensitive data.

Delhi doctor Sanjay Sood discovered this modus operandi recently. He received an official-sounding email, supposedly from the website administrator, asking for an update of his name, date of birth and pin code. Reassured that it did not ask for his password, he quickly provided the information.

Apparently, these details were used to decode his password and hijack his email ID. Next morning, he was flooded with the kind of distress calls that have been extensively reported these days.

source : economic times



Kalyan

Phishing morphs into more advanced versions

"Somebody had sent emails to all my contacts to kindly send dollars to my bank account as I was supposedly stranded in Malaysia.''

Sood had fallen to yet another instance of phishing, a criminal act of pretending to be an official website or email of typically a bank, payment site or website administrator.

Private information thus collected is used to access bank accounts and defraud in other ways.

Fortunately, Sood quickly informed his bank to deactivate his account, informed the police, and a sent an SMS to those on his mailing list to ignore the email.

source : economic times

Kalyan

Many, however, have not been as lucky and their accounts have been misused. Now, what is banks' stand on the subject, considering the fact that online banking is picking up?

"If you compromise your information,'' says a senior banker, "the bank is not at fault.'' Cases of online money transfer fraud brought to the banking ombudsman have increased. While taking a decision, the ombudsman's office factors in the beneficiary of the funds, and whether the bank had adhered to know your customer (KYC) norms while opening the consumer's account.

There have been instances, says an ombudsman official, where banks have been told to refund the defrauded amount.

"If funds are transferred from one account to another in the same bank, there is a possiblity of insider involvement. If there is a duplicate website, it is the responsibility of the banks' technical side to look into it.'' But the issue here is not cure; it's prevention.

source : economic times

Kalyan

Banks increasingly invest in security systems. In internet banking, for instance, there are levels of passwords, among other elaborate authentication procedures.

One thing a bank would never do is ask you for your name or password.

Says Vishal Salvi, chief information security officer at HDFC Bank, "We don't send messages to consumers to solicit information nor encourage such behaviour.'' ICICI Bank too educates its customers to not share personal details such as login and PIN.

Its website highlights simple tips to stay protected, such as always visit the website of a bank by typing its domain name in the browser URL, instead of clicking links on any mails, as ways to identify a spoofed site.

source : economic times

Kalyan

How to protect your bank account

1) Open an A/c directly at a bank branch. A direct selling agent may retain copies of documents, which may help a hacker.

2) Don't engage in sensitive e-banking processes such as funds transfer at a cyber cafe.

3) Remember, a bank (or for that matter, your email site admin) will never ask for an update of your details.

4) Do not use pirated version of the Windows operating system. It will be more vulnerable to spyware and unsolicited programmes. Importantly, load an anti-virus software.

5) If you realise you've made a mistake, immediately try to change the password, and report it.

originally posted : bankers

source : economic times

dhoni

with e-banking we should be proper in secure
this should be secure with password without without hacker disturbance