Monday 15 December 2008

Trusteer Security Researcher Exposes New Three Tier DNS Attack Behind CheckFree.Com Breach

Amit Klein is a noted internet security researcher and CTO of Trusteer. He is an expert on DNS, browser, and endpoint security. Mr. Klein has discovered and reported several high profile DNS vulnerabilities. Prior to Trusteer he was Chief Scientist at Cyota, Inc. (now part of RSA Security) a leading provider of layered authentication solutions.
WHAT: The recent hijacking of the nation's largest e-bill payment system, CheckFree.com, provides a window into a sophisticated new attack method that is likely to become more common in 2009. This new approach, which combines the coordinated and sequenced execution of phishing, pharming, and malware attacks, was used in the CheckFree.com breach. It can bypass sophisticated network perimeter, strong authentication, and endpoint security mechanisms. Mr. Klein can deconstruct how this attack was carried out against Checkfree.com, how it works, and what organizations, especially online financial services providers, can do to protect their customers.
WHERE: Via conference call.
WHEN: Mr. Klein is available immediately for interviews. Please contact Marc Gendron at 781-237-0341, or marc@mgpr.net.
HOW: The Trusteer Security Research Group, led by Mr. Klein, investigates malware attack techniques as well as browser, operating system, and DNS vulnerabilities. The group works closely with security vendors, researchers, and Trusteer's customers to address, remediate, and protect against new vulnerabilities and attacks. For more information visit: http://www.trusteer.com/research.
About Trusteer
Trusteer enables online businesses to establish a secure communication tunnel with their customers over the Internet that stretches from user's keyboard into the company's website. Trusteer's flagship product, Rapport, allows online banks, brokerages, healthcare organizations, and retailers to protect their customers from identity theft and financial fraud. Unlike conventional approaches to Web security, Rapport protects users' confidential information even if their computer is infected with malware including Trojans and keyloggers, or is victimized by pharming, phishing attacks. Trusteer is a privately held corporation led by former executives from Cyota/RSA Security, Imperva, and NetScreen/Juniper. For more information visit www.trusteer.com.
SOURCE: Trusteer

No comments:

Post a Comment