[55244] in North American Network Operators' Group
Re: 13,000 Bank of America ATM's taken out by virus.
daemon@ATHENA.MIT.EDU (Vinny Abello)
Sat Jan 25 22:28:11 2003
Date: Sat, 25 Jan 2003 20:33:24 -0500
To: Patrick <patrick@stealthgeeks.net>
From: Vinny Abello <vinny@tellurian.com>
Cc: "Christopher J. Wolff" <chris@bblabs.com>, nanog@merit.edu
In-Reply-To: <20030125152145.P33392@rockstar.stealthgeeks.net>
Errors-To: owner-nanog-outgoing@merit.edu
At 03:23 PM 1/25/2003 -0800, Patrick wrote:
>On Sat, 25 Jan 2003, Christopher J. Wolff wrote:
>
> >
> > Does this mean that BofA ATM's are SQL based or that BofA is running ATM
> > traffic through some kind of internet VPN? Perhaps they just plug the
> > ATM's into any connection and pass cleartext transactions over the
> > internet? This is very suspicious, IMHO.
>
>At $previous_employer half the connections to the various banks they had
>were via VPN.
I know of a bank whose consultants are blithering idiots. The lack of
security baffles my mind. My home network is 10 times more secure than what
I've been told about. :( I'd hate to think that this is fairly common among
banks but I'm starting to wonder... The only positive thing that has come
out of their lack of security is that I know one place not to put any of my
money. :P
Vinny Abello
Network Engineer
Server Management
vinny@tellurian.com
(973)300-9211 x 125
(973)940-6125 (Direct)
PGP Key Fingerprint: 3BC5 9A48 FC78 03D3 82E0 E935 5325 FBCB 0100 977A
Tellurian Networks - The Ultimate Internet Connection
http://www.tellurian.com (888)TELLURIAN
There are 10 kinds of people in the world. Those who understand binary and
those that don't.