shutterstock_490960141-1

Industry News: ESG5

      Know Your Breach: Postbank

      Jun 19, 2020 10:58:06 AM

      The target: Postbank, the banking division of South Africa’s Post Office.

      The take: $3.2 million USD

      The attack vector: Rogue employees printed the bank’s ‘master key’, a 36 digit code which allows its users to decrypt the bank’s operations and modify security protocols, on a piece of paper from an old data center. Using this credential they were able to access customer accounts and execute more than 25,000 fraudulent transactions, stealing $3.2 million. In addition to the cash, the master key also gave the attackers access to ATM pins, home banking access codes, customer data and credit card information which could then be used for sophisticated phishing attacks.

      This breach highlights the importance of privileged credential management and the cascading negative effects that can happen when a high level protocol is compromised.

      Read more...

      Topics:Know Your Breach

      About Castle Hall Diligence

      Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

      Subscribe to Cyber Updates