06 April 2024

How To Rob An Online Bank And Get Away With It

Ambitious!

"The subject of our dissection is an online bank robbery

Not the all-too-common attack against an online banking user, his computer and his identity, but an attack against the bank itself - or more precisely, against the bank's online banking application.

An online banking attack has four distinct phases:
  1. Vulnerability Finding Phase
  2. Vulnerability Exploitation Phase
  3. Buying Time Phase
  4. Extraction Phase..."

via ACROS Security Blog: Anatomy Of An Online Bank Robbery