Results 1 to 13 of 13

Thread: Tesco Bank Hacked - Thousands Of Accounts Compromised

  1. #1
    Registered+
    Join Date
    Nov 2016
    Location
    Wales
    Posts
    27
    Thanks
    0
    Thanked
    1 time in 1 post
    • realnikb's system
      • CPU:
      • Core i5-6600K
      • Memory:
      • 16GB Corsair LED DDR4
      • Storage:
      • 1TB Samsung 960 Pro M.2, 2x1TB Samsung 850 Evo SSD
      • Graphics card(s):
      • GTX 1080
      • Case:
      • Corsair 460x RGB
      • Monitor(s):
      • Acer X34 Predator
      • Internet:
      • Plusnet... yay =/

    Tesco Bank Hacked - Thousands Of Accounts Compromised

    Haven't seen a post on here about this yet.

    Tesco Bank have announced that over 20,000 customers have had money wiped/stolen from their accounts and another 20,000 plus have been flagged for "suspicious activity".

    Whilst 20,000 customers may not initially sound like a large figure when their total user base is over 7 million, this is easily one of (if not the) biggest online cyber attack to happen to a British bank to date.

    That said, whilst there's over 7 million users/accounts with Tesco, the actual number of current accounts with them comes in at around 136,000. Meaning that around 29% of all current accounts were compromised.

    Source: http://www.independent.co.uk/news/bu...-a7402006.html

  2. #2
    Senior Member
    Join Date
    Aug 2013
    Location
    North Wales
    Posts
    1,849
    Thanks
    165
    Thanked
    271 times in 202 posts
    • virtuo's system
      • Motherboard:
      • Gigabyte Aorus Master X570
      • CPU:
      • Ryzen 9 5950x
      • Memory:
      • 64Gb G.Skill TridentZ Neo 3600 CL16
      • Storage:
      • Sabrent 2TB PCIE4 NVME + NAS upon NAS upon NAS
      • Graphics card(s):
      • RTX 3090 FE
      • PSU:
      • Corsair HX850 80+ Platinum
      • Case:
      • Fractal Meshify 2 Grey
      • Operating System:
      • RedStar 3, Ubuntu, Win 10
      • Monitor(s):
      • Samsung CRG90 5140x1440 120hz
      • Internet:
      • PlusNet's best, but still poor, attempt

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Tesco Bank, I think that's all that needs to be said. Hopefully those 20,000 unfortunate customers get all their money back, plus compo, and put it in to a proper bank.

  3. #3
    HEXUS.social member
    Join Date
    Feb 2006
    Posts
    2,562
    Thanks
    102
    Thanked
    320 times in 213 posts

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    It is like a horror movie; The Tesco Chain-Store Mass Hacker.

  4. Received thanks from:

    Rob_B (08-11-2016)

  5. #4
    Senior Member Macman's Avatar
    Join Date
    Nov 2010
    Location
    Glasgow
    Posts
    1,528
    Thanks
    195
    Thanked
    97 times in 80 posts
    • Macman's system
      • Motherboard:
      • Z170 Pro Gaming
      • CPU:
      • i9 9900K
      • Memory:
      • 32GB
      • Storage:
      • 5TB
      • Graphics card(s):
      • Nvidia GeForce RTX2080Ti
      • PSU:
      • Corsair 650VS
      • Operating System:
      • Windows 11
      • Monitor(s):
      • 27" Asus Predator

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by Gerrard View Post
    It is like a horror movie; The Tesco Chain-Store Mass Hacker.
    You didn't just do that...

  6. #5
    The late but legendary peterb - Onward and Upward peterb's Avatar
    Join Date
    Aug 2005
    Location
    Looking down & checking on swearing
    Posts
    19,378
    Thanks
    2,892
    Thanked
    3,403 times in 2,693 posts

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by virtuo View Post
    Tesco Bank, I think that's all that needs to be said. Hopefully those 20,000 unfortunate customers get all their money back, plus compo, and put it in to a proper bank.
    Not sure what you mean by 'a proper bank'. It started as a joint venture with RBS, but they bought out the RBS share about 8 years ago. They have a banking licence issued by the FSA and so are a 'proper bank' (as is Sainsburys Bank)

    https://en.m.wikipedia.org/wiki/Tesco_Bank
    (\__/)
    (='.'=)
    (")_(")

    Been helped or just 'Like' a post? Use the Thanks button!
    My broadband speed - 750 Meganibbles/minute

  7. #6
    Anthropomorphic Personification shaithis's Avatar
    Join Date
    Apr 2004
    Location
    The Last Aerie
    Posts
    10,857
    Thanks
    645
    Thanked
    872 times in 736 posts
    • shaithis's system
      • Motherboard:
      • Asus P8Z77 WS
      • CPU:
      • i7 3770k @ 4.5GHz
      • Memory:
      • 32GB HyperX 1866
      • Storage:
      • Lots!
      • Graphics card(s):
      • Sapphire Fury X
      • PSU:
      • Corsair HX850
      • Case:
      • Corsair 600T (White)
      • Operating System:
      • Windows 10 x64
      • Monitor(s):
      • 2 x Dell 3007
      • Internet:
      • Zen 80Mb Fibre

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    I'm sure those effected will get some complimentary club card points!
    Main PC: Asus Rampage IV Extreme / 3960X@4.5GHz / Antec H1200 Pro / 32GB DDR3-1866 Quad Channel / Sapphire Fury X / Areca 1680 / 850W EVGA SuperNOVA Gold 2 / Corsair 600T / 2x Dell 3007 / 4 x 250GB SSD + 2 x 80GB SSD / 4 x 1TB HDD (RAID 10) / Windows 10 Pro, Yosemite & Ubuntu
    HTPC: AsRock Z77 Pro 4 / 3770K@4.2GHz / 24GB / GTX 1080 / SST-LC20 / Antec TP-550 / Hisense 65k5510 4K TV / HTC Vive / 2 x 240GB SSD + 12TB HDD Space / Race Seat / Logitech G29 / Win 10 Pro
    HTPC2: Asus AM1I-A / 5150 / 4GB / Corsair Force 3 240GB / Silverstone SST-ML05B + ST30SF / Samsung UE60H6200 TV / Windows 10 Pro
    Spare/Loaner: Gigabyte EX58-UD5 / i950 / 12GB / HD7870 / Corsair 300R / Silverpower 700W modular
    NAS 1: HP N40L / 12GB ECC RAM / 2 x 3TB Arrays || NAS 2: Dell PowerEdge T110 II / 24GB ECC RAM / 2 x 3TB Hybrid arrays || Network:Buffalo WZR-1166DHP w/DD-WRT + HP ProCurve 1800-24G
    Laptop: Dell Precision 5510 Printer: HP CP1515n || Phone: Huawei P30 || Other: Samsung Galaxy Tab 4 Pro 10.1 CM14 / Playstation 4 + G29 + 2TB Hybrid drive

  8. #7
    The late but legendary peterb - Onward and Upward peterb's Avatar
    Join Date
    Aug 2005
    Location
    Looking down & checking on swearing
    Posts
    19,378
    Thanks
    2,892
    Thanked
    3,403 times in 2,693 posts

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by shaithis View Post
    I'm sure those effected will get some complimentary club card points!
    I hope that those that effected the hack will be punished if caught and provide compensation to those affected by the hack (with or with Clubcard points!)
    (\__/)
    (='.'=)
    (")_(")

    Been helped or just 'Like' a post? Use the Thanks button!
    My broadband speed - 750 Meganibbles/minute

  9. #8
    Senior Member
    Join Date
    Aug 2013
    Location
    North Wales
    Posts
    1,849
    Thanks
    165
    Thanked
    271 times in 202 posts
    • virtuo's system
      • Motherboard:
      • Gigabyte Aorus Master X570
      • CPU:
      • Ryzen 9 5950x
      • Memory:
      • 64Gb G.Skill TridentZ Neo 3600 CL16
      • Storage:
      • Sabrent 2TB PCIE4 NVME + NAS upon NAS upon NAS
      • Graphics card(s):
      • RTX 3090 FE
      • PSU:
      • Corsair HX850 80+ Platinum
      • Case:
      • Fractal Meshify 2 Grey
      • Operating System:
      • RedStar 3, Ubuntu, Win 10
      • Monitor(s):
      • Samsung CRG90 5140x1440 120hz
      • Internet:
      • PlusNet's best, but still poor, attempt

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by peterb View Post
    Not sure what you mean by 'a proper bank'. It started as a joint venture with RBS, but they bought out the RBS share about 8 years ago. They have a banking licence issued by the FSA and so are a 'proper bank' (as is Sainsburys Bank)

    https://en.m.wikipedia.org/wiki/Tesco_Bank
    Okay they are a bank, as is Sainsburys. What I meant to imply when I used the word "proper" was a bank whose main business is, and always has been, looking after my money. A bank that understands security and properly audits and monitors their customer facing systems. (That last sentence might be a bit of a presumption, but if something on this large of a scale can go unnoticed for so long, then something was being done badly).

    Seeing a supermarket brand slapped across something serious like loans, insurance and banking just makes me think of a cheap feet-first cash-in.

    And, seeing the fairly poor way Tesco handles their main business (i.e. Groceries), I would always value any of their secondary services below the likes of, say, Santander or HSBC. And after this embarassment, I'd value them below any of their equivalents (e.g. Sainsburys).

  10. #9
    Senior Member
    Join Date
    Dec 2013
    Posts
    3,526
    Thanks
    504
    Thanked
    468 times in 326 posts

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by peterb View Post
    They have a banking licence issued by the FSA and so are a 'proper bank' (as is Sainsburys Bank)
    That's what i found most disturbing, to provide banking service they would have had to meet certain standards, standards that seem to have not protected their customers.
    If it can happen to Sainsbury's logically it could happen to any bank.

  11. #10
    jim
    jim is offline
    HEXUS.clueless jim's Avatar
    Join Date
    Sep 2008
    Location
    Location: Location:
    Posts
    11,457
    Thanks
    613
    Thanked
    1,645 times in 1,307 posts
    • jim's system
      • Motherboard:
      • Asus Maximus IV Gene-Z
      • CPU:
      • i5 2500K @ 4.5GHz
      • Memory:
      • 8GB Corsair Vengeance LP
      • Storage:
      • 1TB Sandisk SSD
      • Graphics card(s):
      • ASUS GTX 970
      • PSU:
      • Corsair AX650
      • Case:
      • Silverstone Fortress FT03
      • Operating System:
      • 8.1 Pro
      • Monitor(s):
      • Dell S2716DG
      • Internet:
      • 10 Mbps ADSL

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by virtuo View Post
    Okay they are a bank, as is Sainsburys. What I meant to imply when I used the word "proper" was a bank whose main business is, and always has been, looking after my money. A bank that understands security and properly audits and monitors their customer facing systems. (That last sentence might be a bit of a presumption, but if something on this large of a scale can go unnoticed for so long, then something was being done badly).
    Yes, that's a big presumption - and probably wrong.

    Ultimately, the FCA and PRA will be going into licensed banks (i.e. all of them) to verify that their security and auditing is fit for purpose - and I would be very surprised if any of them pass everything with flying colours. What that means is that where there are gaps, the regulator will know about it, and most likely if a bank is working to improve its security, it's not because the bank has decided to do it, but because the regulator has told them to do it.

    The one thing that you could argue is that a global bank is likely to have stronger controls, because they're not just dealing with the PRA and FCA, but also the OCC, FFIEC, US Feds, HKMA, MAS... the list goes on. And so they have a much longer list of requirements that they are expected to adhere to. Still though, that doesn't mean they're compliant.

  12. #11
    Senior Member
    Join Date
    Aug 2003
    Posts
    6,585
    Thanks
    0
    Thanked
    246 times in 208 posts

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by Corky34 View Post
    That's what i found most disturbing, to provide banking service they would have had to meet certain standards, standards that seem to have not protected their customers.
    If it can happen to Sainsbury's logically it could happen to any bank.
    That's going by the, perhaps not so far fetched assumption, that no bank will try to exceed the standard though wouldn't it?

  13. #12
    Registered+
    Join Date
    Nov 2016
    Location
    Wales
    Posts
    27
    Thanks
    0
    Thanked
    1 time in 1 post
    • realnikb's system
      • CPU:
      • Core i5-6600K
      • Memory:
      • 16GB Corsair LED DDR4
      • Storage:
      • 1TB Samsung 960 Pro M.2, 2x1TB Samsung 850 Evo SSD
      • Graphics card(s):
      • GTX 1080
      • Case:
      • Corsair 460x RGB
      • Monitor(s):
      • Acer X34 Predator
      • Internet:
      • Plusnet... yay =/

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Tesco have come out and said that everyone who would have been affected would have their money back today... so... yeah fingers crossed for them.

  14. #13
    Senior Member
    Join Date
    Mar 2005
    Posts
    4,935
    Thanks
    171
    Thanked
    384 times in 311 posts
    • badass's system
      • Motherboard:
      • ASUS P8Z77-m pro
      • CPU:
      • Core i5 3570K
      • Memory:
      • 32GB
      • Storage:
      • 1TB Samsung 850 EVO, 2TB WD Green
      • Graphics card(s):
      • Radeon RX 580
      • PSU:
      • Corsair HX520W
      • Case:
      • Silverstone SG02-F
      • Operating System:
      • Windows 10 X64
      • Monitor(s):
      • Del U2311, LG226WTQ
      • Internet:
      • 80/20 FTTC

    Re: Tesco Bank Hacked - Thousands Of Accounts Compromised

    Quote Originally Posted by TooNice View Post
    That's going by the, perhaps not so far fetched assumption, that no bank will try to exceed the standard though wouldn't it?
    Indeed. I've worked in IT in the finance industry and now work Cyber Security. I've worked with many people that have worked collectively probably for most banks that operate in the UK.

    Whilst Cyber Security in banks is much better than most other industries, it is shockingly bad.
    "In a perfect world... spammers would get caught, go to jail, and share a cell with many men who have enlarged their penises, taken Viagra and are looking for a new relationship."

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •