Bank of America Notifies SBA Loan Applicants of Potential Data Leak

This week, the Bank of America revealed that personal data of some of its customers may have been exposed when they uploaded their Paycheck Protection Program (PPP) loan application to the bank’s testing platform. According to a notification lett… Continue reading Bank of America Notifies SBA Loan Applicants of Potential Data Leak

Capital One is a cautionary tale for companies rushing to embrace new tech

Capital One always said it wasn’t like other banks. While other financial giants cautiously waded into their own digital transformations, Capital One’s leadership has sought to differentiate the $28 billion bank by investing in technology meant to modernize their business. The bank has increased its number of technology staffers to 9,000 today from 2,500 in 2011, assigning employees to software engineering, artificial intelligence and building a digital chatbot to automate reminders to customers about when their bills are due or flag unusually large restaurant tips in case they want to rescind them, Rob Alexander, the bank’s chief information officer told the Wall Street Journal last year. Capital One also was different for its use of Amazon Web Services, a rarity in the financial services industry where most corporate heavyweights simply don’t trust third-parties to store their financial data. At Capital One, the use of AWS was to serve as proof of […]

The post Capital One is a cautionary tale for companies rushing to embrace new tech appeared first on CyberScoop.

Continue reading Capital One is a cautionary tale for companies rushing to embrace new tech

TrickBot: New Injects, New Host

What’s in the Name: Call it IcedID or TrickBot? Tell that to a security researcher (Arsh Arora in this case) and watch them RANT
(Gar-note: today’s blog post is a guest blog from malware analyst, Arsh Arora…) 

Today’s post starts w… Continue reading TrickBot: New Injects, New Host

Someone is spoofing big bank IP addresses – possibly to embarrass security vendors

The last several days have seen a surge in internet traffic mimicking the IP addresses of big U.S. banks in a possible effort to disrupt the cybersecurity personnel and products that help protect them, according to GreyNoise Intelligence, a company that maps internet traffic. Bank of America, JPMorgan Chase, and SunTrust are among the banks whose IP addresses are being spoofed to seem like they are conducting broad scans of the internet, GreyNoise said. That large-scale scanning is duping people into thinking that the IP addresses are malicious, GreyNoise founder Andrew Morris told CyberScoop. “There are a lot of people around the internet who are definitely convinced that these are bad IPs,” he said. Threat intelligence teams in the U.S. financial sector are looking into the issue, sources told CyberScoop. Morris said the volume of traffic is too low to be a distributed denial-of-service attack. Instead, he suggested, a bad […]

The post Someone is spoofing big bank IP addresses – possibly to embarrass security vendors appeared first on CyberScoop.

Continue reading Someone is spoofing big bank IP addresses – possibly to embarrass security vendors

Trickbot via fake Bank of America Merrill Lync “FW: Updated Account Transactions “

This example is today’s latest spoof or imitation of a well-known company, bank or public authority delivering Trickbot banking Trojan. The email with the subject of “FW: Updated Account Transactions ” pretends to come from somebody named  … Continue reading Trickbot via fake Bank of America Merrill Lync “FW: Updated Account Transactions “

Trickbot via Fake Bank Of America Secure Message

A bit of a change with the Trickbot delivery system with this example. Instead of directly attaching a malicious macro enabled word doc or other Microsoft Office file to the email, it instead has a html attachment and a link in the email body  that whe… Continue reading Trickbot via Fake Bank Of America Secure Message

Fake Bank of America Secure Message delivers Trickbot banking Trojan

An email with the subject of Secure email message pretending to come from Bank of America but actually coming from a look-a-like domain Bank of America <message@bofamsg.com>  or Bank of America <message@bofa-msg.com> with a malicious word doc attachment  is today’s latest spoof of a well known company, bank or public Continue reading → Continue reading Fake Bank of America Secure Message delivers Trickbot banking Trojan

Fake Bank of America The wire request is unsuccessful! malspam delivers Chthonic banking Trojan

An email with the subject of The wire request is unsuccessful!  pretending to come from Billing Support using random senders & email addresses  with a malicious word doc attachment  delivers Chthonic banking trojan They are using email addresses and subjects that will scare or entice a user to read the email and open the attachment. Continue reading → Continue reading Fake Bank of America The wire request is unsuccessful! malspam delivers Chthonic banking Trojan