Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Hack attacks scam millions from online traders
Boston Herald ^ | October 24, 2006 | Herald staff

Posted on 10/24/2006 2:10:51 PM PDT by PajamaTruthMafia

Third World hackers are sneaking into E*Trade and TD Ameritrade online stock-trading accounts and looting them in a massive pump, dump and run scheme.

Scammers from Eastern Europe and Asia are targeting the online traders in one of the biggest cases of identity theft to strike the U.S. securities industry.

In a conference call last week, E*Trade said it spent $18 million in the third quarter to compensate customers affected by trading fraud. TD Ameritrade said it also suffered losses because of bogus trading by unauthorized users who pried their way into customer accounts, but declined to specify an amount.

In many cases, criminals use personal information, such as Social Security numbers, to hack into users’ accounts. Once in control, they loot the accounts by selling securities and wiring out the proceeds far from the United States.

In one “pump-and-dump” scheme the Securities and Exchange Commission uncovered, thieves used customers’ money to drive up prices of little-traded stocks and then sold shares they bought earlier at a profit.

It’s tough for online brokers to detect hackers because their activity looks as if the holder of the account is carrying out the trading, said Sunil James, head of the security engineering and response team at Arbor Networks - a Lexington-based network security provider.

Such concentrated attacks are often carried out using “bot nets” - networks of individual compromised computers, James said. Hackers can collect individuals’ personal information and then sell it to crime rings in other countries that conduct organized attacks against particular companies, he said.

“Nothing happens piecemeal. It’s usually large swipes that happen at one time because you want to get in and get out,” James said.

James said financial traders will probably boost the layers of protection for online transactions to ensure users’ identities, but in the meantime brokers have a duty to teach customers how to avoid getting their data hacked.


TOPICS: Business/Economy; Crime/Corruption
KEYWORDS: etrade; idtheft; tdameritrade

1 posted on 10/24/2006 2:10:54 PM PDT by PajamaTruthMafia
[ Post Reply | Private Reply | View Replies]

To: PajamaTruthMafia

One day people will wake up, and all of their electronic money will be gone.


2 posted on 10/24/2006 2:12:25 PM PDT by CharlesWayneCT
[ Post Reply | Private Reply | To 1 | View Replies]

To: PajamaTruthMafia

I am surprised this hasn't happened before. It is certainly a logical extension of identity theft, and you can get anyone's SSN with only a minimal amount of starting data now.

I don't see any easy way to deal with this, though one starting point would be to require certificates to do any trading or transactions from a given account. This would certainly inconvenience customers who log in from remote machines, etc.


3 posted on 10/24/2006 2:17:32 PM PDT by WoofDog123
[ Post Reply | Private Reply | To 1 | View Replies]

To: WoofDog123

Mandatory 10 years for ID theft.


4 posted on 10/24/2006 2:20:10 PM PDT by ozoneliar ("The tree of liberty must be refreshed from time to time with the blood of patriots & tyrants" -T.J.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: ozoneliar

well if it is offshore hackers, this is not much of a deterrent. anyone us-based doing this would/should expect to be caught pretty quickly...


5 posted on 10/24/2006 2:27:52 PM PDT by WoofDog123
[ Post Reply | Private Reply | To 4 | View Replies]

To: WoofDog123

google your SS# and see if it's on the internet


6 posted on 10/24/2006 2:30:56 PM PDT by dennisw (Life is a tragedy for those who feel, and a comedy for those who think.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: CharlesWayneCT

"One day people will wake up, and all of their electronic money will be gone."

One day there will only be one currency and one bank worldwide to counter such theft.


7 posted on 10/24/2006 2:34:53 PM PDT by Rb ver. 2.0
[ Post Reply | Private Reply | To 2 | View Replies]

To: PajamaTruthMafia
"...but in the meantime brokers have a duty to teach customers how to avoid getting their data hacked."

Will the SEC start making online trading sites post warning labels on their product, ala cigarettes, so the duffesses who get their information hacked can't sue? /sarc (sort of).

I really am getting sick of crap like the quoted statement. If someone uses a product, service, etc. they should 1)know what they are doing and 2)not be able to sue the company if they do it wrong. As for cigarettes, alcohol, etc. those classes should not have the right to sue, because for the past thirty years it's been know to be hazardous to your health.
8 posted on 10/24/2006 2:37:18 PM PDT by phoenix0468 (http://www.mylocalforum.com -- Go Speak Your Mind.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Rb ver. 2.0
One day there will only be one currency and one bank worldwide to counter such theft.

And you will wear a mark on your forehead which will need to be scanned in order to make any transactions.

It's all been foretold thousands of years ago.

9 posted on 10/24/2006 2:41:25 PM PDT by Tall_Texan ("Journalislam" - reporting about murderous extremists as if they are moral equivalents.)
[ Post Reply | Private Reply | To 7 | View Replies]

To: Tall_Texan

And the technology to do so is here.


10 posted on 10/24/2006 2:42:30 PM PDT by Rb ver. 2.0
[ Post Reply | Private Reply | To 9 | View Replies]

To: PajamaTruthMafia; ShadowAce

BTTT


11 posted on 10/24/2006 2:44:57 PM PDT by Fiddlstix (Warning! This Is A Subliminal Tagline! Read it at your own risk!(Presented by TagLines R US))
[ Post Reply | Private Reply | To 1 | View Replies]

To: dennisw

mine is not, but a friend tested an info service and sent me mine, along with all kinds of other historical address data.

quite depressing, I used to guard my SSN like a state secret.


12 posted on 10/24/2006 2:45:19 PM PDT by WoofDog123
[ Post Reply | Private Reply | To 6 | View Replies]

To: WoofDog123

holy cow!!!! thanks


13 posted on 10/24/2006 2:46:36 PM PDT by dennisw (Life is a tragedy for those who feel, and a comedy for those who think.)
[ Post Reply | Private Reply | To 12 | View Replies]

To: third try

Ping


14 posted on 10/24/2006 5:19:01 PM PDT by reformedliberal ("Eliminate the mullahs and Islam shall disappear in fifty years." Ayatollah Khomeini)
[ Post Reply | Private Reply | To 1 | View Replies]

To: reformedliberal

Thanks for the ping- I heard about this today. The CEO of Ameritrade said that one of the major problems is with people who sign into their accounts from a public computer while they're in another country. How dumb can you get?


15 posted on 10/24/2006 7:27:18 PM PDT by third try
[ Post Reply | Private Reply | To 14 | View Replies]

To: dennisw

Sometimes, I think everyone but me uses mine.


16 posted on 10/25/2006 5:20:21 AM PDT by razorback-bert (I met Bill Clinton once but he didn’t really talk — he was hitting on my wife)
[ Post Reply | Private Reply | To 6 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson