Samker's Computer Forum - SCforum.info

World TOP Headlines: => Latest Security News & Alerts => Topic started by: Pez on 26. June 2012., 09:31:19

Title: Upping the financial fraud stakes with Operation High Roller
Post by: Pez on 26. June 2012., 09:31:19

Upping the financial fraud stakes with Operation High Roller

Earlier today Guardian Analytics and McAfee released a joint fraud report, “Dissecting Operation High Roller,” that describes a new breed of sophisticated fraud attacks. The advanced methods discovered in Operation High Roller show fraudsters moving toward cloud-based servers with multi-faceted automation in a global fraud campaign.

Building on established Zeus and SpyEye tactics, this ring adds many breakthroughs: bypasses for physical “chip and pin” authentication, automated mule account databases, server-based fraudulent transactions, and attempted transfers to mule business accounts as high as €100,000 ($130,000 USD). Where Europe has been the primary target for this and other financial fraud rings in the past, our research found the thefts spreading outside Europe, including the United States and Colombia.

What are the key points about the attacks?
- Shift from traditional Man-in-the-Browser attacks on the victim’s PC to server side automated attacks. Criminals have moved from multi-purpose botnet servers to using servers purpose-built and dedicated to processing fraudulent transactions
- Global – started in Europe, moved to Latin America and recently to the US
- Impacting commercial accounts and high net-worth individuals
- Impacting financial institutions of all sizes

What is the impact of this new fraud methodology?
- Criminals can move faster
- A wide variety and level of dollar transactions can be attempted
- Purpose built, multiple strategy approach helps avoid detection
- By avoiding detection, the servers can stay live longer

Download the report in its entirety here (http://www.mcafee.com/us/resources/reports/rp-operation-high-roller.pdf). A detailed knowledge base article and other documents will be released later today as well.


Orginal article: Monday, June 25, 2012 at 10:36pm by David Marcus (http://blogs.mcafee.com/mcafee-labs/upping-the-financial-fraud-stakes-with-operation-high-roller)
Title: Re: Guardian Analytics and McAfee's report: “Dissecting Operation High Roller”
Post by: Samker on 01. July 2012., 18:28:43
...

...and attempted transfers to mule business accounts as high as €100,000 ($130,000 USD).

...

Download the report in its entirety here (http://www.mcafee.com/us/resources/reports/rp-operation-high-roller.pdf). A detailed knowledge base article and other documents will be released later today as well.

...

Very interesting report.  :thumbsup:


By the way, I don't believe that somebody is that much stupid to try to transfer €100,000 in one single transaction...  ???

What do you think guys?