Media releases > Media releases 2007 >
Standard Bank warns of an increase in online attacks
 

2 April 2007
Fraudsters have launched a new sophisticated phishing attack on Internet banking users.

Phishing attacks occur when fraudsters, pretending to be from financial institutions, send an email to Internet banking customers to trick them into revealing personal banking information. The recipient is usually told to visit a web site where they are asked to enter information such as personal identification numbers (PINs), card details or account numbers. The fraudulent web site is generally identical to the financial institutions and customers would find it difficult to distinguish them. Read more about phishing.

This latest attack is very hi-tech. The fraudsters ask users to divulge very specific information, like card and PIN numbers as well as email addresses. The fraudsters have generated a carbon copy of Standard Bank's website to fool customers into believing they are on the genuine Standard Bank website. Customers are lured to this site via an email.

Standard Bank will never ask customers for this type of information. PINs are secret and only customers should know their own number.

Peter Schlebusch, Deputy Chief Executive, Personal and Business Banking, says several customers have unfortunately divulged their information and had their accounts compromised. However, no customers have suffered any losses.

Never divulge personal information like card numbers and PINs to third parties.

Schlebusch says: ”Customers should view emails from strange sources with the same amount of suspicion as they would the person behind them in an ATM queue. Your personal details are just as vulnerable in cyber space as they are in the real world if the correct precautions are not taken. Customers acting responsibly by keeping their personal details confidential are our first line of defence against online fraudsters. Knowing and understanding the security environment is important so as to not fall victim to these syndicates.”

Standard Bank is committed to protecting the integrity of your banking details. We urge you to take effective security measures when transacting over the Internet. You should make use of our free security and authentication offerings. Adopt the following security features and practices:

  • Treat unsolicited email with suspicion
  • Never divulge sensitive information.
  • One-time password is a unique, compulsory and time-sensitive password used as added security on selected Internet banking transactions. The password will be sent by email or SMS and is valid for one Internet banking session. This service is free.
  • My Notification is an email or SMS service that informs customers when profile amendments, new beneficiary additions, amendments to existing beneficiaries and once-off payments are carried out on Internet banking.
  • Payment confirmation is a notification that informs both the payer and payee that a transfer or payment has been successfully completed.
Read more about these measures.

Standard Bank is the only local bank to offer McAfee Antivirus software free to all our Internet banking users. This antivirus and firewall software can be downloaded directly from our Internet banking website. Read more about our Internet banking service.

If you are concerned that your personal details may have been compromised, call us on 0800 020 600 or +27 11 299 4114. Our lines are open 24 hours a day. You may also email us: Standardbank-e-mailunit@standardbank.co.za