Share these talks and lectures with your colleagues
Invite colleaguesThe leakage of passwords from home banking sites: A threat to global cyber security?
Abstract
E-banking systems rely on browsers and other financial applications to provide a secure service. As this paper shows, however, many e-banking systems fail to provide the requisite level of confidentiality. This paper focuses on vulnerabilities related to the leakage of login information from the client side. It demonstrates that by using forensic techniques and tools, it was possible to acquire login-related data from a number of websites. This proves that important authentication data used in navigation activities remain on disk, posing a clear threat to confidentiality.
The full article is available to subscribers to the journal.
Author's Biography
Rodrigo Ruiz is researcher at Renato Archer Center for Information Technology and a member of the Society of Digital Information and Wireless Communications. He has presented at a number of conferences, and his work on privacy and security has been published in such journals as Cyber Security Review Magazine, Cyber Defense Magazine, Journal of Cyber Security and Mobility, 2600 Magazine, United States Cyber Security Magazine and International Journal of Cyber Security and Digital Forensics. He is also a co-author of the book ‘Apoc@lypse: The End of Antivirus’.
Rogério Winter is a colonel in the Brazilian army with more than 30 years’ experience in military operations and information security. He is a member of the Society of Digital Information and Wireless Communications and has a master’s degree in electronic engineering and computation from the Aeronautics Technological Institute. His work focuses on cyber warfare, decision-making processes and command and control. He is also a co-author of the book ‘Apoc@lypse: The End of Antivirus’. Kil Jin Brandini Park is a professor at the Federal University of Uberlândia, specialising in computer engineering and information security. He has a PhD in engineering and conducts postdoctoral work in malware analysis. He is also a co-author of the book ‘Apoc@lypse: The End of Antivirus’.
Fernando Amatte has more than 20 years of experience in security IT. He has a postgraduate qualification in information security and is a Certified Information Systems Security Professional, GIAC Certified Incident Handler and Módulo Certified Security Officer. His experience includes coordinating a security team for a large multinational bank, and coordinating automated malware analysis for the Pandora Project. He is also a co-author of the book ‘Apoc@lypse: The End of Antivirus’.