{"id":6416,"date":"2015-11-03T09:47:40","date_gmt":"2015-11-03T14:47:40","guid":{"rendered":"https:\/\/kasperskydaily.com\/uk\/?p=6416"},"modified":"2020-02-26T15:11:21","modified_gmt":"2020-02-26T15:11:21","slug":"online-payments-in-danger","status":"publish","type":"post","link":"https:\/\/www.kaspersky.co.uk\/blog\/online-payments-in-danger\/6416\/","title":{"rendered":"Are we putting our finances at risk with our online shopping and banking?"},"content":{"rendered":"<p>Nearly everyone has faced a cyber criminal\u2019s activity at one point or another. You have probably received a magical SMS that read something like: \u201cYou are the winner!!! Your Ferrari and $1M await you! Call XXXXXX right now!!!\u201d Up until now, these well-known tricks have worked surprisingly well. Even if you\u2019ve never taken the bait yourself, you probably know somebody who did.<\/p>\n<p>That person (or you) is not alone. Employees of huge corporations have also been taken by schemes from cyber criminals. For example, over the course of two years the <a href=\"https:\/\/www.kaspersky.com\/blog\/billion-dollar-apt-carbanak\/7519\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Carbanak cybergang stole funds from dozens of financial institutions<\/a> worldwide to the tune of roughly $1 Billion. Right now, there is a type of <a href=\"https:\/\/www.kaspersky.co.uk\/blog\/android-banking-trojans\/9897\/\" target=\"_blank\" rel=\"noopener\">mobile malware targeting mobile banking<\/a>.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">The greatest heist of the century: how hackers stole $1 bln <a href=\"https:\/\/t.co\/mLlnrDLFbl\" target=\"_blank\" rel=\"noopener nofollow\">https:\/\/t.co\/mLlnrDLFbl<\/a> <a href=\"http:\/\/t.co\/bLFjN6ugLZ\" target=\"_blank\" rel=\"noopener nofollow\">pic.twitter.com\/bLFjN6ugLZ<\/a><\/p>\n<p>\u2014 Kaspersky (@kaspersky) <a href=\"https:\/\/twitter.com\/kaspersky\/status\/567506274028617728?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">February 17, 2015<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>To earn easy money, hackers, for example, make specific malware, which replaces legitimate banking interfaces with custom imagery and code. But before stealing your money, a malware needs to be installed on your device. So how does it find a loophole?<\/p>\n<p>A <a href=\"https:\/\/www.kaspersky.com\/blog\/cyber-savvy-quiz\/\" target=\"_blank\" rel=\"noopener nofollow\">test, recently conducted by Kaspersky Lab<\/a>, shows that many users <a href=\"https:\/\/press.kaspersky.com\/files\/2015\/09\/Cyber_savvy_quiz_report.pdf\" target=\"_blank\" rel=\"noopener\">do not follow basic security rules<\/a> when make online payments or log into an online banking system. 50% of the people surveyed do not check if they use the authentic website of their bank or payment system. They don\u2019t pay attention at the https prefix, which indicates an encrypted connection; some of the surveyed have even selected a website with a misspelled address \u2014 an obvious sign of a <a href=\"https:\/\/www.kaspersky.com\/blog\/how-to-avoid-phishing\/6145\/\" target=\"_blank\" rel=\"noopener nofollow\">fake phishing page<\/a>.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Check out our \u2018dos &amp; don\u2019ts\u2019 of online payments <a href=\"https:\/\/t.co\/92KulwdPTo\" target=\"_blank\" rel=\"noopener nofollow\">https:\/\/t.co\/92KulwdPTo<\/a>  <a href=\"https:\/\/twitter.com\/hashtag\/ThinkSecurityGuide?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#ThinkSecurityGuide<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/cybercrime?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#cybercrime<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/Kaspersky?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#Kaspersky<\/a> <a href=\"http:\/\/t.co\/MAubOv862k\" target=\"_blank\" rel=\"noopener nofollow\">pic.twitter.com\/MAubOv862k<\/a><\/p>\n<p>\u2014 Kaspersky (@kaspersky) <a href=\"https:\/\/twitter.com\/kaspersky\/status\/544183901032546305?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">December 14, 2014<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>It seems that a key logger will also find its victim: only each fifth of those surveyed prefer to use a virtual keyboard to protect their passwords from interception by malware. In the survey other users stated that they choose the \u201cincognito\u201d mode to protect a payment, or resort to an anonymizer, or even try to enter and wipe the data repeatedly in order \u201cto confuse viruses.\u201d Unfortunately, these actions do nothing to protect a user\u2019s financial information.<\/p>\n<blockquote class=\"twitter-pullquote\"><p>Are we putting our #finances at risk with our #online shopping and #banking?<\/p><a href=\"https:\/\/twitter.com\/share?url=https%3A%2F%2Fkas.pr%2FLzg2&amp;text=Are+we+putting+our+%23finances+at+risk+with+our+%23online+shopping+and+%23banking%3F\" class=\"btn btn-twhite\" data-lang=\"en\" data-count=\"0\" target=\"_blank\" rel=\"noopener nofollow\">Tweet<\/a><\/blockquote>\n<p>What\u2019s more surprising it\u2019s that 20% of the users do not think of protecting their banking accounts even offline. For example, in a restaurant they are ready to give their banking card to a nice waitress or a polite waiter and let them take it out of their site.<\/p>\n<p>This is a bad idea. Please, remember: if fraudsters receive access to your card at least for a minute, they can make a full-fledged copy very quickly.<\/p>\n<p><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/86\/2015\/11\/05194630\/Kaspersky-Top-10-Habits-640-48010-284559.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-6418\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/86\/2015\/11\/05194630\/Kaspersky-Top-10-Habits-640-48010-284559.png\" alt=\"Kaspersky-Top-10-Habits-640-48010-284559\" width=\"640\" height=\"480\"><\/a><\/p>\n<p>Banks cannot guarantee 100% protection simply because to large extend security depends on users behavior. Besides, not all payment systems care about cyber security that much. That\u2019s why users, especially the less cyber savvy, should install specific solution to secure their online payments.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">How to set up <a href=\"https:\/\/twitter.com\/hashtag\/Safe?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#Safe<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/Money?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#Money<\/a> in Kaspersky Internet <a href=\"https:\/\/twitter.com\/hashtag\/Security?src=hash&amp;ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">#Security<\/a> <a href=\"https:\/\/t.co\/cbyNTG1hOy\" target=\"_blank\" rel=\"noopener nofollow\">https:\/\/t.co\/cbyNTG1hOy<\/a> <a href=\"https:\/\/t.co\/1H6x8bmdHM\" target=\"_blank\" rel=\"noopener nofollow\">pic.twitter.com\/1H6x8bmdHM<\/a><\/p>\n<p>\u2014 Kaspersky (@kaspersky) <a href=\"https:\/\/twitter.com\/kaspersky\/status\/657209000379985920?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">October 22, 2015<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>For example, one can have a look at the <a href=\"https:\/\/www.kaspersky.com\/about\/news\/product\/2015\/Kaspersky-Labs-Safe-Money-Technology-Recognized-as-Outstanding-by-MRG-Effitas\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">award-winning Safe Money<\/a> technology for Windows and Mac OS X integrated in <a href=\"https:\/\/www.kaspersky.co.uk\/multi-device-security\" target=\"_blank\" rel=\"noopener noreferrer\">Kaspersky Internet Security \u2013 Multi-Device<\/a> and <a href=\"https:\/\/www.kaspersky.co.uk\/total-security-multi-device\" target=\"_blank\" rel=\"noopener noreferrer\">Kaspersky Total Security \u2013 Multi-Device<\/a>. Safe Money enables a multi-layered defense. It checks if the site is secure, ensures you\u2019re not being tricked by a fake page and then opens the website in a special, protected mode.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Nearly every person has ever faced a cyber criminal\u2019s activity; many have become victims of banking frauds. So, how does it happen?<\/p>\n","protected":false},"author":522,"featured_media":6417,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2026],"tags":[499,407,794,822,709,179,97,609,1160],"class_list":{"0":"post-6416","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-threats","8":"tag-banking","9":"tag-kis","10":"tag-money","11":"tag-online-payments","12":"tag-research","13":"tag-safe-money","14":"tag-security-2","15":"tag-tests","16":"tag-users"},"hreflang":[{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/online-payments-in-danger\/6416\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/online-payments-in-danger\/6215\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/online-payments-in-danger\/6340\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/online-payments-in-danger\/6851\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/online-payments-in-danger\/6367\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.co.uk\/blog\/tag\/banking\/","name":"banking"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts\/6416","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/users\/522"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/comments?post=6416"}],"version-history":[{"count":3,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts\/6416\/revisions"}],"predecessor-version":[{"id":19236,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/posts\/6416\/revisions\/19236"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/media\/6417"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/media?parent=6416"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/categories?post=6416"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.co.uk\/blog\/wp-json\/wp\/v2\/tags?post=6416"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}