Menu
Sign In
shutterstock_490960141-1

Industry News: ESG5

    Know Your Breach: Postbank

    Jun 19, 2020 10:58:06 AM

    The target: Postbank, the banking division of South Africa’s Post Office.

    The take: $3.2 million USD

    The attack vector: Rogue employees printed the bank’s ‘master key’, a 36 digit code which allows its users to decrypt the bank’s operations and modify security protocols, on a piece of paper from an old data center. Using this credential they were able to access customer accounts and execute more than 25,000 fraudulent transactions, stealing $3.2 million. In addition to the cash, the master key also gave the attackers access to ATM pins, home banking access codes, customer data and credit card information which could then be used for sophisticated phishing attacks.

    This breach highlights the importance of privileged credential management and the cascading negative effects that can happen when a high level protocol is compromised.

    Read more...

    Topics:Know Your Breach

    About Castle Hall Diligence

    Castle Hall helps investors build comprehensive due diligence programs across hedge fund, private equity and long only portfolios More →

    Subscribe to Cyber Updates