Page 1 of 2 12 LastLast
Results 1 to 16 of 31

Thread: Best security setup for online banking?

  1. #1
    Senior Member
    Join Date
    Nov 2006
    Posts
    536
    Thanks
    2
    Thanked
    4 times in 4 posts

    Question Best security setup for online banking?

    Myself and my girlfriend would like to do online banking, but she is rather worried about security issues.

    I am planning on setting up a separate partition and xp-pro install specifically for online banking. Anyone have any advice for making it as secure as possible, as nothing else is needed on the install?


    Internet access is through a wireless network that is reasonably secure, and I'm prepared to consider all options. My girlfriend is not particularly computer literate, so just having a secure setup she can use happily seems a good idea.


    All advice appreciated.
    Asus Z170 Pro Gaming. i5-6500. 16gig Ripjaw 2400. Samsung 950pro NMVe 250gig+ 1tb Intel 660p. GTX Titan. Corsair TX650M.



    939 3800 X2 | 2gig corsairXMS 3200C2
    1950XT | 500gig,320,200,160
    Plextor DVD burner | Yamaha CRW-F1 CD-drive
    Thermaltake Xaser 3 w 480W FSP | X-fi fatal1ty

    Things have moved on since I first joined...

  2. #2
    Member
    Join Date
    Aug 2007
    Posts
    125
    Thanks
    15
    Thanked
    2 times in 2 posts
    • djfluff's system
      • Motherboard:
      • asus p8z77-V premium
      • CPU:
      • i5-3570k
      • Memory:
      • 8GB Patriot 1600
      • Storage:
      • 4TB RAID1 (Cached By 32GB SSD) + 80GB SSD Boot
      • Graphics card(s):
      • gtx 670
      • PSU:
      • Seasonic s12 500w
      • Case:
      • Corsair 550D
      • Operating System:
      • Windows 8 K
      • Monitor(s):
      • Samsung 22"
      • Internet:
      • 8MB ADSL

    Re: Best security setup for online banking?

    A couple of tips :
    *Make sure you have up-to-date anti-virus software
    *If you keep doccuments on your PC containing sensitave information,
    you can use software like Truecrypt (Free from www.truecrypt.org) to make sure
    that it's safe.
    *Use the on screen keybord (accessability tool) for entering online-banking passwords,
    that way, no-spyware or keyloggers can steal your password!!

  3. #3
    Editable... jimbouk's Avatar
    Join Date
    Aug 2005
    Location
    Exeter
    Posts
    3,143
    Thanks
    333
    Thanked
    294 times in 242 posts
    • jimbouk's system
      • Motherboard:
      • Asrock B450M-HDV R4.0
      • CPU:
      • AMD Ryzen 5 3600
      • Memory:
      • Corsair Vengeance LPX 16 GB (2 x 8 GB) DDR4 3200 MHz C16
      • Storage:
      • Sabrent Rocket Q 1TB NVMe PCIe M.2 2280
      • Graphics card(s):
      • PowerColor Radeon RX 6700 XT 12GB Fighter
      • PSU:
      • Seasonic Core Gold GC-650
      • Case:
      • Lian-Li PC-V1100 ATX
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • AOC CU34G2/BK 34" Widescreen
      • Internet:
      • EE FTTP

    Re: Best security setup for online banking?

    Natwest posted me a card reader to plug into my computer rather than typing in my ID, pin and password. I don't know if it's any better, got posted to my mum's house so it'll wait there till christmas when I'm home.

    For the connection, make sure the wireless is WPA, not WEP. You might be able to add mac-address filtering depending on the router.

    For software; antivirus and firewall (I just use a hardware firewall on the router, depends who else can connect to the router and how much you trust them/their computers).

    Firefox has the option to delete all saved information, history, cookies, cache. You can set it up to automattically do it on exit. You could get her that to only use for banking and nothing else.

    For downloading bankstatements, you could just tel her not to, save having to worry about keeping them safe. Paper ones still work

    It should be generally ok, so long as you keep your login details safe and don't have a virus/spyware logging what you're doing. Just don't reply to any email asking for login details...

  4. #4
    Does he need a reason? Funkstar's Avatar
    Join Date
    Aug 2005
    Location
    Aberdeen
    Posts
    19,874
    Thanks
    629
    Thanked
    962 times in 813 posts
    • Funkstar's system
      • Motherboard:
      • Gigabyte EG45M-DS2H
      • CPU:
      • Intel Core2Quad Q9550 (2.83GHz)
      • Memory:
      • 8GB OCZ PC2-6400C5 800MHz Quad Channel
      • Storage:
      • 650GB Western Digital Caviar Blue
      • Graphics card(s):
      • 512MB ATI Radeon HD4550
      • PSU:
      • Antec 350W 80+ Efficient PSU
      • Case:
      • Antec NSK1480 Slim Mini Desktop Case
      • Operating System:
      • Vista Ultimate 64bit
      • Monitor(s):
      • Dell 2407 + 2408 monitors
      • Internet:
      • Zen 8mb

    Re: Best security setup for online banking?

    I would be more inclined to look into your banks security measures, rather than going to the trouble of setting up seperate installs etc.

    The Royal Bank of Scotlands system is prtty good. You have a login ID which is your DoB plus a number (probably the nth person to have that DoB in their system). You have a 4 digit pin code, from which you are asked for three digits in a random order. Then you have your password. Again they only ever ask for three random digits.

    You never get email from them and they will never ask for all of your information in a telephon conversation or online. So i is it wasy to spot phishing emails.

    It is probably a good idea to completely close your browser and open a fresh one before loggin in, then close it when you are finished before continuing to other sites.

    Most online fraud is from phishing (good old fasioned social engineering really) and dodgy retailers selling or using your card details.

  5. #5
    YUKIKAZE arthurleung's Avatar
    Join Date
    Feb 2005
    Location
    Aberdeen
    Posts
    3,280
    Thanks
    8
    Thanked
    88 times in 83 posts
    • arthurleung's system
      • Motherboard:
      • Asus P5E (Rampage Formula 0902)
      • CPU:
      • Intel Core2Quad Q9550 3.6Ghz 1.2V
      • Memory:
      • A-Data DDR2-800 2x2GB CL4
      • Storage:
      • 4x1TB WD1000FYPS @ RAID5 3Ware 9500S-8 / 3x 1TB Samsung Ecogreen F2
      • Graphics card(s):
      • GeCube HD4870 512MB
      • PSU:
      • Corsair VX450
      • Case:
      • Antec P180
      • Operating System:
      • Windows Server 2008 Standard
      • Monitor(s):
      • Dell Ultrasharp 2709W + 2001FP
      • Internet:
      • Be*Unlimited 20Mbps

    Re: Best security setup for online banking?

    Quote Originally Posted by djfluff View Post
    A couple of tips :
    *Make sure you have up-to-date anti-virus software
    *If you keep doccuments on your PC containing sensitave information,
    you can use software like Truecrypt (Free from www.truecrypt.org) to make sure
    that it's safe.
    *Use the on screen keybord (accessability tool) for entering online-banking passwords,
    that way, no-spyware or keyloggers can steal your password!!
    I think that is going a bit too far?

    If you have sensitive information, put it in a USB thumbdrive and lock it in your cabinet, not encrypt it. If you encrypt it, and you forget the password 10 years later you gonna be screwed. Also, you think that piece of software is going to work 10 years later? In case you break the harddrive, because it is encrypted you can't decrypt it unless the file is recovered in good shape.

    On screen keyboard is actually more dangerous because anyone outside your window will be able to see your password being typed in. It is as bad as being looked at when you type in your PIN at the cash machine. And why would you have a keylogger installed in the first place.

    For my bank (Halifax), you need to wait a few hours to setup transfers to accounts not under your name and you get an email about the setup. Basically you will know if someone planning to move away your money, and you sure have enough time to notify the bank to reverse transaction.

    It will be safe enough to use it on a firewalled fresh XP SP2 install.

    If you don't install anything weird there should be nothing to worry about.

    The only thing is do not use internet banking on any public computer as quite a lot of them do have some really evil spyware/malware
    Workstation 1: Intel i7 950 @ 3.8Ghz / X58 / 12GB DDR3-1600 / HD4870 512MB / Antec P180
    Workstation 2: Intel C2Q Q9550 @ 3.6Ghz / X38 / 4GB DDR2-800 / 8400GS 512MB / Open Air
    Workstation 3: Intel Xeon X3350 @ 3.2Ghz / P35 / 4GB DDR2-800 / HD4770 512MB / Shuttle SP35P2
    HTPC: AMD Athlon X4 620 @ 2.6Ghz / 780G / 4GB DDR2-1000 / Antec Mini P180 White
    Mobile Workstation: Intel C2D T8300 @ 2.4Ghz / GM965 / 3GB DDR2-667 / DELL Inspiron 1525 / 6+6+9 Cell Battery

    Display (Monitor): DELL Ultrasharp 2709W + DELL Ultrasharp 2001FP
    Display (Projector): Epson TW-3500 1080p
    Speakers: Creative Megaworks THX550 5.1
    Headphones: Etymotic hf2 / Ultimate Ears Triple.fi 10 Pro

    Storage: 8x2TB Hitachi @ DELL PERC 6/i RAID6 / 13TB Non-RAID Across 12 HDDs
    Consoles: PS3 Slim 120GB / Xbox 360 Arcade 20GB / PS2

  6. #6
    Comfortably Numb directhex's Avatar
    Join Date
    Jul 2003
    Location
    /dev/urandom
    Posts
    17,074
    Thanks
    228
    Thanked
    1,026 times in 677 posts
    • directhex's system
      • Motherboard:
      • Asus ROG Strix B550-I Gaming
      • CPU:
      • Ryzen 5900x
      • Memory:
      • 64GB G.Skill Trident Z RGB
      • Storage:
      • 2TB Seagate Firecuda 520
      • Graphics card(s):
      • EVGA GeForce RTX 3080 XC3 Ultra
      • PSU:
      • EVGA SuperNOVA 850W G3
      • Case:
      • NZXT H210i
      • Operating System:
      • Ubuntu 20.04, Windows 10
      • Monitor(s):
      • LG 34GN850
      • Internet:
      • FIOS

    Re: Best security setup for online banking?

    Quote Originally Posted by Fabula View Post
    Myself and my girlfriend would like to do online banking, but she is rather worried about security issues.

    I am planning on setting up a separate partition and xp-pro install specifically for online banking. Anyone have any advice for making it as secure as possible, as nothing else is needed on the install?


    Internet access is through a wireless network that is reasonably secure, and I'm prepared to consider all options. My girlfriend is not particularly computer literate, so just having a secure setup she can use happily seems a good idea.


    All advice appreciated.
    you're buying an entire xp pro retail license (£230) for online banking?

    that's quite, quite mad

    hey, if you're taking security THAT far, how much do you trust your software? can you be SURE nobody's written any backdoors into it? how would you check? no source, no security
    Last edited by directhex; 28-08-2007 at 01:28 PM.

  7. #7
    Agent of the System ikonia's Avatar
    Join Date
    May 2004
    Location
    South West UK (Bath)
    Posts
    3,736
    Thanks
    39
    Thanked
    68 times in 51 posts

    Re: Best security setup for online banking?

    the security concern is not yours above and beyond your home PC, which is mentioned above. Latest Operating system patches, latest antivirus definitions etc etc.

    The thing YOU need to do is apply common sense. Make sure the URL in the URL bar your visiting is actually for your bank, correct spelling, correct domain, and not an ip address or missspelled URL. Make sure you are transfered to a verified SSL site without a warning (the little padlock icon in your browser).

    Most security issues don't come from the bank/your PC being exploited, but from a user inputting his details in the wrong site (eg: a fraud site from an email).

    Make sure YOU always type the URL, make sure YOU verify the URL and SSL status, not others, links or emails
    It is Inevitable.....


  8. #8
    The late but legendary peterb - Onward and Upward peterb's Avatar
    Join Date
    Aug 2005
    Location
    Looking down & checking on swearing
    Posts
    19,378
    Thanks
    2,892
    Thanked
    3,403 times in 2,693 posts

    Re: Best security setup for online banking?

    Natwest posted me a card reader to plug into my computer rather than typing in my ID, pin and password. I don't know if it's any better, got posted to my mum's house so it'll wait there till christmas when I'm home.[/QUOTE

    Actually they sent you a device that generates a response to a challenge number that appaers on the site for certain transactions. (Essentilly a pseudo random number generator that is seeded by your servicecard. There is no attachment to the computer (other tna via your screen, eyes, brain, fingers, keyboard)

    Quote Originally Posted by jimbouk View Post
    For the connection, make sure the wireless is WPA, not WEP. You might be able to add mac-address filtering depending on the router..
    WPA is more secure than WEP, but unless you are specifically targeted, WEP is probably good enough. However your banking transactions will be SSL encrpted at the browser. If you are really concerned about security in this instance, use a wired connection!

    Quote Originally Posted by jimbouk View Post
    For software; antivirus and firewall (I just use a hardware firewall on the router, depends who else can connect to the router and how much you trust them/their computers).
    Good advice, but of course you aren'r running your computer user account with administrator priviliges are you? If you are, or are using the dault set up account, stop now and set up a user account with minimal priviliges required for daily use. If you are sharing one machine, set up separate accounts - one each. (although admin can, witha bit of effort) see into all folders. Some routers allow for wirelesws connections to only allow outbound internet connections and keep the internal network protected. So if anyone did hijack your wireless connection, they couldn't access your computers.

    Quote Originally Posted by jimbouk View Post
    Firefox has the option to delete all saved information, history, cookies, cache. You can set it up to automattically do it on exit. You could get her that to only use for banking and nothing else.
    However these work when you shut down the browser - although since the SSL encryption is session based, just shutting down the browser when you have finished the banking session.

    Quote Originally Posted by jimbouk View Post
    For downloading bankstatements, you could just tel her not to, save having to worry about keeping them safe. Paper ones still work
    Statements are no more vulnerable than any other documents, but if you want to keep them private, set up a separate folder for bank statements and password protect it. If you are really paranoid then download GnuPGP (bit clunky on windows - it is a command line interface althouigh there are some additional graphical front ends, like gpgee) and encrypt the stored bank statement files that way.

    Quote Originally Posted by jimbouk View Post
    It should be generally ok, so long as you keep your login details safe and don't have a virus/spyware logging what you're doing. Just don't reply to any email asking for login details...
    Absolutely - most of the additional sy measures (apart from admin accounts) are not really required so long as you practice sensible basic sy measures. (like not opening suspicious e mails, using your router firewall, avoiding dodgy websites etc)
    Last edited by peterb; 28-08-2007 at 01:45 PM.
    (\__/)
    (='.'=)
    (")_(")

    Been helped or just 'Like' a post? Use the Thanks button!
    My broadband speed - 750 Meganibbles/minute

  9. #9
    DR
    DR is offline
    on ye old ship HEXUS DR's Avatar
    Join Date
    Jul 2003
    Location
    HEXUS HQ, Elstree
    Posts
    13,412
    Thanks
    1,060
    Thanked
    841 times in 373 posts

    Re: Best security setup for online banking?

    I think you are taking it too far

    Remember, the bank has insurance against fraud but the above tips of

    - Make sure Operating System is up to date
    - Look for the Padlock
    - Make sure you have anti-virus installed and up to date...

    I'd be more concerned about using a Wireless network which isn't 100% secure than worrying about having a seperate XP install for it...

  10. #10
    lazy student nvening's Avatar
    Join Date
    Jan 2005
    Location
    London
    Posts
    4,656
    Thanks
    196
    Thanked
    31 times in 30 posts

    Re: Best security setup for online banking?

    I know im probably just jumping on the linux is more secure band waggon but would there be any advantages? Or is there not much difference?
    (\__/)
    (='.'=)
    (")_(")

  11. #11
    780 nanometres redlight's Avatar
    Join Date
    May 2005
    Location
    East Herts
    Posts
    859
    Thanks
    7
    Thanked
    26 times in 19 posts
    • redlight's system
      • Motherboard:
      • Abit QuadGT
      • CPU:
      • Core 2 Quad 6600@3.1
      • Memory:
      • 4GB Geil PC6400
      • Storage:
      • 2x250GB Samsung 400GB Seagate
      • Graphics card(s):
      • Leadtek 8800GTS 640MB
      • PSU:
      • Tagan 580w
      • Case:
      • Gigabyte Aurora
      • Monitor(s):
      • Fujitsu Siemens 22" + 42" plasma
      • Internet:
      • 2MB Tiscali

    Re: Best security setup for online banking?

    Anybody else got one of those card reader things from Natwest.

  12. #12
    Hello jackvdbuk's Avatar
    Join Date
    Apr 2006
    Location
    Stratford
    Posts
    2,513
    Thanks
    468
    Thanked
    112 times in 95 posts
    • jackvdbuk's system
      • Motherboard:
      • AbiT IP35-PRO
      • CPU:
      • Intel C2Q Q9550
      • Memory:
      • OCZ Nvidia SLi Edition 4GB (2x2gb) pc2-6400 DDR2
      • Storage:
      • lots of TB
      • Graphics card(s):
      • BFG 8800GTS 512MB
      • PSU:
      • Corsair HX620W
      • Case:
      • Corsair 800D
      • Operating System:
      • Windows 7 Premium x64
      • Monitor(s):
      • Dell 2407WFP
      • Internet:
      • Orange (about 6Mb)

    Re: Best security setup for online banking?

    tbh if your THAT worried dont use online banking

    i suppose as long your pc isnt riddled with lots of spyware adware and malicious junk, youd be fine with the appropiat firewall,antivirus e.t.c
    Quote Originally Posted by redlight View Post
    Anybody else got one of those card reader things from Natwest.
    did ING have card readers? i think i saw one aaaages ago

  13. #13
    Registered+
    Join Date
    Jun 2007
    Posts
    34
    Thanks
    0
    Thanked
    0 times in 0 posts
    • bydandie's system
      • Motherboard:
      • ASrock 4COREDUAL-VSTA
      • CPU:
      • E4300 O/C to 2.4Ghz
      • Memory:
      • 2Gb 667Mhz RAM U/C to 533Mhz
      • Storage:
      • 250Gb Samsung Spinpoint SATA drive + 500Gb RAID I QNAP TS-209 Pro
      • Graphics card(s):
      • GeCube Radeon 9600
      • PSU:
      • Ebuyer's best
      • Case:
      • Generic
      • Monitor(s):
      • Samsung 22" Widescreen Monitor
      • Internet:
      • 3Mbs ADSL :(

    Re: Best security setup for online banking?

    As everyone else has said, check windows update daily (Before you start browsing). Use a good AV suite (KIS is currently the best IMHO and I have moved from free to paid for AV becuase of it) that has some kind of decent protection builtin.

    Use your grandmother's maiden name when they ask for your mother's maiden name, use a separate email address for banking and online shopping. Don't use the same password for these as you use for your normal email, and use passphrases instead of passwords (ie Sentences that don't make sense - StealWireSheepFromTesco is an example). The following are the most common secure wireless encryption methods in order of strength - WPA2, WPA WEP. Use a non-descriptive SSID and a long passphrase. Makes sure that none of the above are the same/similar to each other. Use encryption to protect your data on your PC/laptop from physical theft.

    An online identity needs to be protected; the steps above help, but you also need a level of scepticism.

  14. #14
    The late but legendary peterb - Onward and Upward peterb's Avatar
    Join Date
    Aug 2005
    Location
    Looking down & checking on swearing
    Posts
    19,378
    Thanks
    2,892
    Thanked
    3,403 times in 2,693 posts

    Re: Best security setup for online banking?

    Quote Originally Posted by redlight View Post
    Anybody else got one of those card reader things from Natwest.
    Yes - see my other post in this thread.
    (\__/)
    (='.'=)
    (")_(")

    Been helped or just 'Like' a post? Use the Thanks button!
    My broadband speed - 750 Meganibbles/minute

  15. #15
    Comfortably Numb directhex's Avatar
    Join Date
    Jul 2003
    Location
    /dev/urandom
    Posts
    17,074
    Thanks
    228
    Thanked
    1,026 times in 677 posts
    • directhex's system
      • Motherboard:
      • Asus ROG Strix B550-I Gaming
      • CPU:
      • Ryzen 5900x
      • Memory:
      • 64GB G.Skill Trident Z RGB
      • Storage:
      • 2TB Seagate Firecuda 520
      • Graphics card(s):
      • EVGA GeForce RTX 3080 XC3 Ultra
      • PSU:
      • EVGA SuperNOVA 850W G3
      • Case:
      • NZXT H210i
      • Operating System:
      • Ubuntu 20.04, Windows 10
      • Monitor(s):
      • LG 34GN850
      • Internet:
      • FIOS

    Re: Best security setup for online banking?

    Quote Originally Posted by nvening View Post
    I know im probably just jumping on the linux is more secure band waggon but would there be any advantages? Or is there not much difference?
    it's slightly less mad than spending £230 on XP again (what with it being free), but generally speaking, outside the usual "there's less spyware etc" arguments, there'd be no benefit

    a bigger question is over browsers - it can be particularly bad in some cases (e.g. in korea, all online banking by law needs to use a particular 32-bit msie activex control)

  16. #16
    Gentoo Ricer
    Join Date
    Jan 2005
    Location
    Galway
    Posts
    11,048
    Thanks
    1,016
    Thanked
    944 times in 704 posts
    • aidanjt's system
      • Motherboard:
      • Asus Strix Z370-G
      • CPU:
      • Intel i7-8700K
      • Memory:
      • 2x8GB Corsiar LPX 3000C15
      • Storage:
      • 500GB Samsung 960 EVO
      • Graphics card(s):
      • EVGA GTX 970 SC ACX 2.0
      • PSU:
      • EVGA G3 750W
      • Case:
      • Fractal Design Define C Mini
      • Operating System:
      • Windows 10 Pro
      • Monitor(s):
      • Asus MG279Q
      • Internet:
      • 240mbps Virgin Cable

    Re: Best security setup for online banking?

    Quote Originally Posted by directhex View Post
    a bigger question is over browsers - it can be particularly bad in some cases (e.g. in korea, all online banking by law needs to use a particular 32-bit msie activex control)
    That sounds very dubious, sounds like spyware to me (and well, it *is* korea). In most cases I'd trust online banking that stick to html form/ssl/ssi over elaborate authentication systems any day, the former tends to have less compatibility issues and security issues.
    Quote Originally Posted by Agent View Post
    ...every time Creative bring out a new card range their advertising makes it sound like they have discovered a way to insert a thousand Chuck Norris super dwarfs in your ears...

Page 1 of 2 12 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Mac + Firefox fans, verses security
    By TheAnimus in forum General Discussion
    Replies: 3
    Last Post: 20-09-2005, 10:22 PM
  2. Xp system setup
    By J273 in forum Help! Quick Relief From Tech Headaches
    Replies: 6
    Last Post: 16-06-2005, 12:19 AM
  3. Have you done all of your windows updates ?
    By Moby-Dick in forum General Discussion
    Replies: 33
    Last Post: 05-05-2004, 01:23 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •