Aardvark Daily aardvark (ard'-vark) a controversial animal with a long probing nose used for sniffing out the facts and stimulating thought and discussion.

NZ's leading source of Net-Industry news and commentary since 1995
PAYBACK TIME! | Headlines | XML feed | Contact | New Sites | Archives | Forums | About
Note: This column represents the opinions of the writer and as such, is not purported as fact
Westpac Fires Back 15 March 2004 Edition
Previous Edition | Archives

Please support the sponsor
Sponsor's Message
Having already been the target of several phishing scams here in New Zealand, and quite a few more in Australia, the Westpac Bank has come out in defence of its online banking system and its attitude to security.

After my column of last Thursday I received this response from the bank and I notice that IDG is carrying the bank's rebuttal of claims made in Australia last week.

Let's deal with the response to my column(s) first...

The initial phishing scam to hit NZ started arriving in people's mailboxes late Friday October 31 2003. Over that weekend, thousands of fraudulent emails purporting to be from the bank and designed to dupe those people into disclosing their details were delivered.


The Aardvark PC-Based Digital
Entertainment Centre Project

Yes, at last, this feature has been updated again! (31 Mar 2003)

Despite security being a 24/7 obligation, the bank didn't do anything to warn customers about this very specific threat until the following week.

For more than three days, there was no specific warning on the bank's website and no notification to customers.

As a result, some 300 customers were reportedly caught out by the scam.

Readers Say

Got something to say about today's column, or want to see what others think?  Visit The Forums

Indeed, when the bank did finally get around to emailing its customers with a specific warning, it was too little, too late. I didn't get my warning email until six days after the fraudulent emails began arriving.

In respect to the website warnings -- I have to admit that although I do use the online banking facility offered by the bank, I'm not a "regular" visitor so must have missed the warnings that were supposed to have appeared on the front page as of March 2003. I would wager that I'm not alone in my usage patterns and it would appear that at least 300 others also failed to see those warnings.

With the latest round of phishing emails hitting people's mailboxes last week, the bank was a little quicker off the mark and I got my warning email just three days after the scam started.

I find it a little ironic that the email says "never follow an e-mail link to a site where you will need to disclose secure information such as your ID or Password" -- and then proceeds to include two links to pages on the bank's website where the online banking login is just one click away.

So I would say that yes, the bank may have tried to be pre-emptive back in early 2003, but as a typical customer I wasn't aware of it -- and neither were any of the other Westpac customers I've spoken to in the past week.

Yes, the bank did inform customers of the specific risks associated with the first NZ phishing scam -- but their response was "too little too late."

Yes, the bank is getting better in its response times -- but they're still woefully inadequate, as witnessed by the three day delay this time.

It's also a little naive of Mr Gregory to claim that "it doesn’t matter how sophisticated these emails get. The customers are well versed in how we do business with them and they know these are fake". That's like believing that nobody ever clicks on an unsolicited email attachment any more and therefore there's no way a virus will propagate this way -- or that nobody in this day and age would fall for the Nigerian scam.

Let's face it -- far too many people are just plain stupid and because of this, things like email viruses, spam, scams, and phishing expeditions are very much alive and well. To assume your customers represent a demographic which is totally devoid of idiots is a very dangerous thing to do.

Banks have a duty of responsibility when it comes to looking after other people's money and, to some degree, protecting those people from their own ignorance or stupidity.

When it comes to online banking the problems are manifold and quite wide-ranging. Not only do we have phishing scams but also key-loggers, trojans and a raft of other ways in which criminals can get their hands on other people's "safely" banked loot using the Net.

I would invite Westpac not to lay back and believe that their customers are now well-informed and vigilant. They should instead be working very hard on reducing the lead time involved in identifying new threats and informing their customers of them within *HOURS* of those threats appearing.

New Forums!
Yes folks, good news. The grotty ezboard forums have been replaced with a new phpBBS-based system that won't assault you with a myriad of pop-ups and other flotsam.

A big thanks to Managed Internet Solutions for offering to provide this service.

You can access the new forums over at aardvarkforums.co.nz

Yes, You Can Gift Money
I've published this website for the past nine years as a service to the local internet and IT industry and during all that time it has been 100% free to access. It is my intention to ensure that it remains completely free and free of charge and contains only the most sparse levels of advertising. Aardvark is not a business, it is a free resource.

If you feel that this is a good thing and/or you hold a "geniune affection" for yours truly -- then you are welcome to gift me some money using the buttons provided. In gifting this money you accept that no goods, service or other consideration is offered, provided, accepted or anticipated in return. Just click on the button to gift whatever you can afford. NOTE: PayPal bills in US dollars so don't accidentally gift more than what you were intending :-)

Contacting Aardvark
The Best of Aardvark Daily I'm always happy to hear from readers, whether they're delivering brickbats, bouquets or news tip-offs. If you'd like to contact me directly, please this form. If you're happy for me to republish your comments then please be sure and select For Publication.

Other media organisations seeking more information or republication rights are also invited to contact me.


Add Aardvark To Your Own Website!
Got a moment? Want a little extra fresh content for your own website or page?

Just add a couple of lines of JavaScript to your pages and you can get a free summary of Aardvark's daily commentary -- automatically updated each and every week-day.

Aardvark also makes a summary of this daily column available via XML using the RSS format. More details can be found here.

Contact me if you decide to use either of these feeds and have any problems.

Linking Policy
Want to link to this site? Check out Aardvark's Linking Policy.

Did you tell someone else about Aardvark today? If not then do it now!


Latest
Security Alerts
New vulnerabilities in Microsoft software
(ZDNet - 10/04/2004)

Microsoft warns of widespread Windows flaw (CNet - 12/02/2004)

RealPlayer flaws open PCs up to hijackers (ZDNet - 5/02/2004)

Macromedia Patches ColdFusion Holes (iNetNews - 1/02/2004)

Latest
Virus Alerts
Worm disguises self as Microsoft patch (CNet - 8/03/2004)

New MyDoom Virus Packs a Wallop (Wired - 25/02/2004)

New Bagle email worm on a roll (IDG - 19/2/2004)

'Robin Hood' virus on the loose (vnunet - 13/02/2004)

Bookmark This Page Now!

 

OTHER GREAT TECH SITES
GeekZone (NZL)
SlashDot (USA)

 

MORE NEWS
NZL Sites
IDG.Net.nz
NZ Netguide
NZ Herald Tech
PC World NZ
Scoop
NZOOM Technology WordWorx

AUS Sites
ZDNet
The Age
Australian IT
AUS Netguide
NineMSN Tech
IT News

USA Sites
Wired.com
CNet
CNNfn Tech
TechWeb
Yahoo Tech
ZDNet Tech
USA Today Tech
7am.com SciTech

UK Sites
The Register
BBC SciTech

 

My Jet Engines
Check Out Me And My Jet Engines

Today's Top News Stories


Open in New Window = open in new window
New Zealand

Open in New Window Vodafone explains TSO delay
A conflict of interest involving its legal advisers was behind Vodafone's delay in lodging an appeal over the Commerce Commission's decision on the Telecommunications Service Obligation...
NZ Herald

Open in New Window Government releases internet discussion document
The Government today released a discussion document setting out steps toward a "Next Generation Internet network", serving the research, education and innovation sectors...
Stuff

Other

Open in New Window What to Do if SCO Comes Knocking
As the battle lines over Linux harden between The SCO Group and the open-source community regarding SCO's challenge to parts of the Linux kernel, IT managers are being warned to take measures to minimize their potential legal exposure...
InternetNews

Open in New Window MSN Messenger, Hotmail on the fritz
Microsoft investigates customer complaints that both MSN Messenger and Hotmail have been intermittently inaccessible since Friday morning...
CNet

Open in New Window MySQL addresses open-source license problem
Then open-source database company takes a step to mend a rift in the open-source world by updating a licensing provision that had broken a close tie between the MySQL database and another software package...
CNet

Open in New Window Foiled: Darpa Bots All Fall Down
The 15 self-navigating vehicles competing in a 150-mile race across the Mojave Desert all break down within a few miles of the starting line. Pentagon sponsors will have to wait for a free-ranging robotic combat vehicle...
Wired

Open in New Window Feds Want Wiretap-Ready Net
The FCC should make sure technology companies provide law enforcement the ability to listen in to digital communication, according to papers filed by federal agencies. Costs can be passed on to consumers, of course...
Wired

Australia

Open in New Window Niche farmers going online to run their properties
Niche farmers are increasingly using the internet, leaving behind beef, sheep and crop producers, a report says...
The Age

Open in New Window eBay launches Aust security PR blitz
With 21 million items listed on its Web site every day, it is easy to tell why eBay has become a favourite target for organised e-scams in Australia...
ZDNet

Open in New Window Piracy extradition case adjourned
A SYDNEY court is to decide if a NSW man alleged to have headed an international software piracy ring known as "Drink or Die" should be extradited to face charges in the US...
AustralianIT

Other

Open in New Window Washington Beefs Up Can Spam
The two powerful federal agencies empowered as the whip hand of the Can Spam Act began the process Thursday of fully implementing the United States' first national law aimed at curbing unsolicited bulk e-mail...
InternetNews

Open in New Window Stanford researchers: beer bubbles sink, sometimes
Stanford University scientists have solved another great mystery of the universe with today's announcement of a new study proving that when beer is poured into a glass the bubbles sometimes fall rather than rise...
SFGate

Open in New Window EU plans safer net for children
European Union officials are proposing to spend more than £30m to try to make the internet safer for children...
BBC

Open in New Window Office update clogs spam filters
Antispam software vendors are scrambling to find a fix to the fixes in a recently released service pack for Office XP and Office 2000, which some say causes havoc with spam filters...
CNet


Looking For More News or Information?

Google
Search WWW Search Aardvark

Privacy Policy | Copyright © 2003, Bruce Simpson, republication rights available on request

jet engine page