Feeds

Feds investigate theft of $3m from NY school

An epidemic continues

Internet Security Threat Report 2014

The FBI and New York state police are investigating the online theft of more than $3m from a small school district in the western part of the state.

All but $497,200 was eventually recovered after an employee at Norwich, New York-based NBT Bank alerted officials at Duanesburg Central School District to the unusually large overseas transfers and managed to get them reversed. The pilfering happened over a four-day period starting on December 18.

"At this point, they haven't uncovered exactly how the funds were accessed, so that's what they're working on now," said Audrey Hendricks, a spokeswoman for the district.

Tales of multi-million dollar thefts from online bank accounts have become common by now. In November, the FBI estimated that losses to small businesses alone reached $100m as of the end of October. The American Bankers Association and the FBI recently warned small and midsized businesses to limit their online transactions to a single computer that's not used for other activities such as reading email or general web surfing, according to USA Today.

The FBI has investigated more than 200 cases on online bank theft, mostly in 2008 and 2009, in which cybercooks successfully made off with $40 million, the paper reported.

In October, El Reg seconded advice first provided by security reporter Brian Krebs that online banking transactions no longer be carried out using Windows-based PCs.

Hendricks, the school district spokeswoman, said three employees were authorized to conduct online transactions, each on a different computer. None of them is considered a suspect in the theft. The district has about 1,000 students and an annual budget of $14.9m. ®

Secure remote control for conventional and virtual desktops

Whitepapers

Designing and building an open ITOA architecture
Learn about a new IT data taxonomy defined by the four data sources of IT visibility: wire, machine, agent, and synthetic data sets.
5 critical considerations for enterprise cloud backup
Key considerations when evaluating cloud backup solutions to ensure adequate protection security and availability of enterprise data.
Getting started with customer-focused identity management
Learn why identity is a fundamental requirement to digital growth, and how without it there is no way to identify and engage customers in a meaningful way.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Protecting against web application threats using SSL
SSL encryption can protect server‐to‐server communications, client devices, cloud resources, and other endpoints in order to help prevent the risk of data loss and losing customer trust.