Feeds

JPMorgan Chase is latest US bank in MYSTERY web savaging

Islamic 'Cyber Fighters' back for more dotcom beatings?

5 things you didn’t know about cloud backup

JPMorgan Chase's website went kaput yesterday when the bank became the latest US financial institution to find itself on the business end of a distributed denial-of-service assault.

Visitors to chase.com were shown a "website temporarily down" message on the front page, although the bank's mobile apps were said to be working.

Iran and a group of Islamic activists called the Izz ad-Din al-Qassam Cyber Fighters have been linked to internet attacks on major American banks, including US Bancorp, Citigroup, Wells Fargo and Bank of America.

The hacktivists claimed responsibility for a series of distributed denial-of-service attacks that hit those financial organisations in September, and declared JPMorgan Chase, SunTrust and PNC Financial Services Group were all possible targets for a second stage in its operations.

"In new phase, the wideness and the number of attacks will increase explicitly; and offenders and subsequently their governmental supporters will not be able to imagine and forecast the widespread and greatness of these attacks," the group said in a statement posted on the Pastebin website in December.

the Cyber Fighters said that the reason for the computer network offensive was the continued availability of the inflammatory Innocence of Muslims video on YouTube. However, when the video was taken down, the group said it had suspended its attacks.

A former American government official claimed earlier this year that Iran was orchestrating the attacks. James Lewis of the Centre for Strategic and International Studies in Washington believed that the aim was retaliation over the nuclear-fuel-centrifuge-knackering virus Stuxnet and other cyber-barrages against Iran.

JPMorgan Chase's site now appears to be working, although DDoS attacks can result in intermittent service. In December, Wells Fargo customers had trouble using the bank's site for at least four days as it dropped in and out of view. But security experts have said that there's no real evidence to show that Iranian officials are behind the campaign. ®

Secure remote control for conventional and virtual desktops

More from The Register

next story
Ice cream headache as black hat hacks sack Dairy Queen
I scream, you scream, we all scream 'DATA BREACH'!
Goog says patch⁵⁰ your Chrome
64-bit browser loads cat vids FIFTEEN PERCENT faster!
NIST to sysadmins: clean up your SSH mess
Too many keys, too badly managed
Scratched PC-dispatch patch patched, hatched in batch rematch
Windows security update fixed after triggering blue screens (and screams) of death
Researchers camouflage haxxor traps with fake application traffic
Honeypots sweetened to resemble actual workloads, complete with 'secure' logins
Attack flogged through shiny-clicky social media buttons
66,000 users popped by malicious Flash fudging add-on
New Snowden leak: How NSA shared 850-billion-plus metadata records
'Federated search' spaffed info all over Five Eyes chums
Three quarters of South Korea popped in online gaming raids
Records used to plunder game items, sold off to low lifes
Oz fed police in PDF redaction SNAFU
Give us your metadata, we'll publish your data
prev story

Whitepapers

Endpoint data privacy in the cloud is easier than you think
Innovations in encryption and storage resolve issues of data privacy and key requirements for companies to look for in a solution.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Advanced data protection for your virtualized environments
Find a natural fit for optimizing protection for the often resource-constrained data protection process found in virtual environments.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.