the publicity in the bank, U shield is to protect the personal safety of online banking the most effective know your online banking account and password are helpless. However, the use of bank U Shield is not absolutely safe.
Video: Man U shield using a remote control fraud 300,000 yuan Source: BTV Ju Mansfield young hackers quietly Trojan implanted a computer. When users enter the Internet bank U Shield, Ju Mansfield took the opportunity to network users from the two bank accounts stolen 30 million yuan.case to reproduce
others never use Internet banking to be transferred onto the ten thousand yuan
Ms. Lee is a Taobao users, Industrial and Commercial Bank of frequently used online banking to pay for safety reasons to buy her a special U-Shield Industrial and Commercial Bank.
2010 年 9 月 2 evening, Ms. Lee was found on Taobao online banking theft, a month before being transferred out of 10,800 yuan.
Lee was very surprised that this computer in her house with only her own, has never been used to other people, has never been repaired, use and found no abnormalities.
investigation, 10,800 yuan was transferred to the
middle school employees manufacture major online banking theft
victims of Shantou City, Mr. Shaw. He also used the ICBC U Shield, but the theft of a much larger amount - 297,600 yuan.
2010 年 10 月 14 afternoon, as a garment factory owner Mr. Shaw was about to transfer, the computer suddenly black and white. After a child, the computer was back to normal, Mr. Shaw a check account balances, bank card found inside the 29 million yuan was transferred to
Mr. Shaw reported, the police found, machine out.
after the police for further investigation, November 13, 2010 afternoon, the police arrested the suspect Ju Wen-hui.
in the rented room, police searched three computers, the use of the five crime ICBC bank cards, bank cards have two signatures on the back read, the
told police interrogation, Kui Fai Trojan to steal for their own use customer funds confessed.
had speculated online banking bank of criminal gangs, in fact, only one person Ju Wen-hui. The Ju Mansfield only 25 years old, just graduated from junior high school field workers.
crime Secret
use of home computer test and explore the , why break the bank to steal the user U shield of protection money? Reporters recently conducted this interview.
early as 2001, had just graduated from junior high school boy left home in Anhui Ju Wen-hui work outside the home. After the Spring Festival in 2004, Ju battles Mansfield to Beijing in the Zhongguancun area to sell office supplies, rent, Haidian District,beats by dre uk, Shue in a cottage.
education was not high, but Ju Mansfield usually like the Internet, gradually learned how to use the Trojan.
2010 March, Kui Fai search to a Trojan from the Internet, it can remotely access the other computer system operating authority, on the other side of the keyboard can be recorded.
the Trojans to a Ju Mansfield thought of making money: If you can implant users of this computer, so that when users use online banking, is it can record online banking account information?
Ju Mansfield bank itself is U-Shield users. He passed a few computers at home was tested and eventually worked out the use of Trojan horse
taking advantage of the U Shield not unplug 30 seconds to go online banking transfer funds
how to implant Trojan to the user's computer, which is the implementation of online banking theft first step.
Ju Mansfield used a Trojans can be automatically embedded computer users, making their own
, he will see the user's computer through Trojans have online banking system drive, and installed a user-driven online banking has become the focus of Ju Wen-hui,
However, online banking Trojans can only record the user's bank account number and password U Shield, and account password due to the protected Trojan can not be recorded.
In order to understand the user's account password, Ju Wen-hui will be recorded by other Trojan login mail, QQ, forum password, and then take advantage of users not using online banking, use these passwords to experiment. Many users are accustomed to bank passwords and passwords used on the same network, which left Ju Mansfield the opportunity to start.
access to this information, when the user re-use online banking, the shield into the computer after the U, Ju Wen-hui will be in the remote monitoring user's computer screen. The other side to online banking transactions came to an end, Ju Mansfield Shield will not pull down the use of U time, quickly log on each other's online banking, the money transferred out.
according to Ju Mansfield's argument, this process is very short, about less than 30 seconds to complete, but no time to notice each other.
wearing glasses, a baseball cap out of money ATM machine
by the police recovered five bank cards, is Ju Mansfield in specially from the Internet a crime before QQ friends bought the place to spend 1000 yuan, account name to include the above mentioned
although the network can be
online banking from Mr. Shaw on the victim's stolen 29 million yuan, was scattered Ju Wen-hui prior to import bank card to buy three, respectively, for 3 consecutive days after the Haidian District in five different locations ATM machines will be out of money.
to avoid detection, Ju Wen-hui before each withdrawal will be a simple make-up. Ju Wenhui usually do not wear glasses, but he will wear a withdrawal of glasses and a red baseball cap.
Trojans steal online banking capital flow chart
implant Trojan horse: use of p> Finding Users: The Trojans look for online banking driven computer installation, the
transfer of funds: While the user to insert U after the transaction has not disconnect the shield machine, the other online banking login and quickly transferred out of money
courtroom
can use their own computer monitor the user's computer
10 am today, a diminutive Ju Wen-hui was brought into court. Media correspondent saw the scene of video and still cameras, Kui Fai seems to have
dash in the online world of Ju WH, prosecutors and judges in answer to a question always becomes In response to
charges for theft, Ju Wen-hui did not challenge, nor do anything for their own defense.
have cracked more than 20 user account password
West's Procuratorate Liu Wenhui prosecutors, use Trojan Shield users U stole 30 million dollars after huge amounts of money, according to Ju Wen-hui himself the words of the Fear of being captured by the police Ju Wen-hui, the stolen money into his bank account he did not dare to spend.
According to Ju Mansfield said the theft shield the target user U was chosen, because the bank's online banking users up, so the crime is more likely to succeed.
in just a few months, Ju Wen-hui successfully cracked more than 20 U shield the user's account, password and U Shield password, and four stolen succeed. Two of which a small amount of money involved is not yet verified.
Bank U there is a loophole in the use of shield
Liu Wenhui prosecutors said, compared with the general crime of theft, theft of Ju Mansfield through online banking Trojan greater harm to society. Wenhui theft target because Ju is not a specific, and theft of a huge amount. Prosecutors recommended that the Court in 12 years to 13 years in prison between his sentencing.
His father asked Ju Mansfield must mend.
in the face of media interviews, Ju Mansfield do not want to recall a specific course of committing the crime,
reporter asked whether there are ways to prevent the theft of online banking funds, Kui Fai a casually said: > court will fix a ruling on the case.
edition text / reporter Li Kui
● U Shield card
U Shield, launched in 2003 that the bank and customers access to national patent certificate USBkey, is ICBC's online banking service for high-level security tools. It is shaped like a U-disk, like a shield, always protect the safety of online banking funds.
from a technical point of view, U shield is used for online banking authentication of electronic signatures and digital tools, it is built-in micro-processor smart cards, using 1024 non-symmetric key algorithm to encrypt data on the Internet, decryption and digital signatures to ensure the confidentiality of online transactions, authenticity, integrity and non-repudiation.
Related articles:
没有评论:
发表评论