Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Now, Every Keystroke Can Betray You
LA Times ^ | 9/18/05 | Joseph Menn

Posted on 09/18/2005 5:35:49 PM PDT by Crackingham

Bank customers know to shield their ATM passwords from prying eyes. But with the rise of online banking, computer users may not realize electronic snoops might be peeking over their shoulder every time they type. In a twist on online fraud, hackers and identity thieves are infecting computers with increasingly sophisticated programs that record bank passwords and other key financial data and send them to crooks over the Internet.

That's what happened to Tim Brown, who had account information swiped out of the PC at his Simi Valley store.

"It's scary they could see my keystrokes," said Brown, owner of Kingdom Sewing & Vacuum. "It freaks me out."

Brown learned of the scam only after security researchers stumbled onto a computer harvesting information from hundreds of PCs and felt compelled to alert some of the people who had the most data exposed. Realizing he was lucky to get the call last month, Brown changed his passwords and is hoping for the best.

"This even staggered us," said Alex Eckelberry, president of Sunbelt Software Inc., which found that the so-called keylogger program installed itself in a way most antivirus software could not block. "Online institutions now have to assume that the account holder may have been compromised."

SNIP

"We're seeing explosive growth in 'crimeware,' " said Peter Cassidy, the working group's secretary general. "It's really galloping."

Consumers are increasingly jittery: 42% say security concerns have caused them to change their electronic shopping habits, according to research firm Gartner Inc.

(Excerpt) Read more at latimes.com ...


TOPICS: Business/Economy; Crime/Corruption; Culture/Society; Extended News; News/Current Events; Technical
KEYWORDS: exploit; getamac; internetexploiter; lookoutexpress; lowqualitycrap; malware; microsoft; securityflaw; spyware; windows
Navigation: use the links below to view more comments.
first 1-2021-4041-53 next last

1 posted on 09/18/2005 5:35:50 PM PDT by Crackingham
[ Post Reply | Private Reply | View Replies]

To: Crackingham

There is only one thing I can say - Whenever you allow, keyloggers, viruses, trogans and the like on your computer, it is GWB's fault. ;>)


2 posted on 09/18/2005 5:48:49 PM PDT by TheHound (You would be paranoid too - if everyone was out to get you.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Crackingham; Famishus

Ping


3 posted on 09/18/2005 5:50:09 PM PDT by mother22wife21 ("We ain't stuck on stupid," General Honore said. "We don't place troops in the eye of a hurricane.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Crackingham
Microsoft and companies like them work their butts off on mandatory unpaid overtime to develop the rich and flexible APIs that make this possible. Then they go into mandatory unpaid double overtime to patch all the errors they made. Then it's 7 days a week, 16+ hours a day to fix the errors in the patches. Sometimes I think the whole world would be a lot better off if they would just relax a little, write *less* software, and make sure what they do write actually works.
4 posted on 09/18/2005 5:51:17 PM PDT by beef (Who Killed Kennewick Man?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Crackingham

bttt


5 posted on 09/18/2005 5:51:51 PM PDT by Lancey Howard
[ Post Reply | Private Reply | To 1 | View Replies]

To: Crackingham
A surefire fix is to boot and run from a Linux LiveCD like knoppix. A second way is to run Linux or do like I do, I run OpenSolaris.
6 posted on 09/18/2005 5:52:28 PM PDT by Tarpon
[ Post Reply | Private Reply | To 1 | View Replies]

To: beef
Sometimes I think the whole world would be a lot better off if they would just relax a little, write *less* software, and make sure what they do write actually works.

Like in the old days? Why, you right-wing, conservative, reactionary luddite! ;-)

I agree 100%.

7 posted on 09/18/2005 5:53:06 PM PDT by Gondring (I'll give up my right to die when hell freezes over my dead body!)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Crackingham
... the so-called keylogger program installed itself in a way most antivirus software could not block

Does this mean if you don't type your password it can't see it?
How about if you copy and paste?

8 posted on 09/18/2005 5:54:41 PM PDT by Jorge (Q)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Crackingham
Two rules to live up: keep your anti-virus software up to date and install Preempt and Spywareblaster to keep the crud from being installed in the first place. And as an additional safeguard, install Eric L. Howe's free Agnis blocklist to make sure no trojan-infested or crimeware site can run on your computer to install unwanted drive by software on it. With vigilance you can safely enjoy, bank and shop on the Internet without becoming a victim.

(Denny Crane: "Sometimes you can only look for answers from God and failing that... and Fox News".)
9 posted on 09/18/2005 5:55:11 PM PDT by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Tarpon

A third way is to run OS X. That way you can actually use the OS in a convenient manner.


10 posted on 09/18/2005 5:55:16 PM PDT by Terpfen (http://www.pattonhq.com/unknowntext.html)
[ Post Reply | Private Reply | To 6 | View Replies]

To: Terpfen
True, but a LiveCD affords you of knowing what exactly is loaded and keeps anything from being added. You can even make them for yourself.

Mac OS-X is a reasonable alternative, as good as any of the disk based *NIXes.
11 posted on 09/18/2005 6:02:25 PM PDT by Tarpon
[ Post Reply | Private Reply | To 10 | View Replies]

To: Tarpon

True, but running a LiveCD as a primary OS is just asking for trouble, IMO. Better to use it as an option for recovering a computer that's been completely screwed over by junkware, IMO.


12 posted on 09/18/2005 6:04:15 PM PDT by Terpfen (http://www.pattonhq.com/unknowntext.html)
[ Post Reply | Private Reply | To 11 | View Replies]

To: Terpfen

A third way is to run OS X. That way you can actually use the OS in a convenient manner.


Hate to burst your bubble, but the reason Hackers target Windows and Explorer is because they are the dominant OS & browser. More bang for the buck for their effort don't ya know. If something else were on top, that would get targeted (and compromised) too. The more code, the more flaws to exploit.


13 posted on 09/18/2005 6:04:21 PM PDT by rbg81
[ Post Reply | Private Reply | To 10 | View Replies]

To: rbg81
the reason Hackers target Windows and Explorer is because they are the dominant OS & browser.

Same old tired argument gets trotted out every time, no matter how many times it's debunked.

Did you ever wonder why a freakin' CELL PHONE, with 100,000 installed units, gets more viruses than a computer with 20+ million?

14 posted on 09/18/2005 6:10:35 PM PDT by Izzy Dunne (Hello, I'm a TAGLINE virus. Please help me spread by copying me into YOUR tag line.)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Terpfen
running a LiveCD as a primary OS is just asking for trouble,

Why do you say that? I use a Knoppix liveCD all the time. I put my information, bookmarks and other stuff on a USB key, boot and run. When I am done banking I shutdown and remove the usb key.

15 posted on 09/18/2005 6:14:40 PM PDT by Tarpon
[ Post Reply | Private Reply | To 12 | View Replies]

To: Tarpon

As a primary OS... for one, it's impossible to apply updates, and you can't quite burn an updated CD when you're using the Live CD to begin with. You're also stuck with the inability to install anything, from programs to program updates.

The LiveCD is a nice concept, but as a primary OS... nah.


16 posted on 09/18/2005 6:22:12 PM PDT by Terpfen (http://www.pattonhq.com/unknowntext.html)
[ Post Reply | Private Reply | To 15 | View Replies]

To: Terpfen
Well you are right. But as I said you use it for only one purpose, running in a protected mode where you want to do just a couple of things with high security, like online banking, stock trading, buying on line. You don't need the latest updates, just functional. My trusty LiveCD is about a year old.

For normal use I run OpenSolaris from disk where the account is locked down. Only problem is multimedia which sucks on Solaris unless it's realplayer.
17 posted on 09/18/2005 6:26:58 PM PDT by Tarpon
[ Post Reply | Private Reply | To 16 | View Replies]

To: Tarpon

Running it for one or two tasks, I can understand: I wasn't rejecting it out of hand for such a thing. I'm just saying that as a primary OS, meaning a replacement for an OS installed on a hard drive, it wouldn't work.


18 posted on 09/18/2005 6:28:20 PM PDT by Terpfen (http://www.pattonhq.com/unknowntext.html)
[ Post Reply | Private Reply | To 17 | View Replies]

To: Crackingham

I just got the bad taste of "progressives" out of my mouth. Now we call them keystrokes?


19 posted on 09/18/2005 6:38:10 PM PDT by 359Henrie
[ Post Reply | Private Reply | To 1 | View Replies]

To: Terpfen
Well it does work, you're right, it's just not convenient. With knoppix you can use other storage as read-write, usb keys or usb hard drives for that matter. The key is main memory, I have 1.5 Gbytes in my on line box, so there is plenty to run completely out of memory. If you only have 512 mB it will be slower but still usable. For what I do, specifically sensitive things, the inconvenience makes up for the assurance in what I am doing.

Do you get many security updates with Mac OS-X? I quit using RH ES Linux because the security updates come out frequently. Solaris has very few updates and a simple patch system by comparison.
20 posted on 09/18/2005 6:40:08 PM PDT by Tarpon
[ Post Reply | Private Reply | To 18 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041-53 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson