Penetration Testing mailing list archives

RE: Bank Audit Best practices


From: "Roman Draconus <roman"@empire.securityfocus.com
Date: 24 Mar 2004 16:28:55 -0000

just infected the bank's network, possibly resulting in loss of the
bank's ATM machines (like SLAMMER did to the LARGEST bank in the 
world, BANK ONE), DoS against some of the bank's mission critical 
servers, and a whole ton of pain, heartache, lost production hours 
and costs associated with any cleanup.

Just for clarity, could you please provide reference regarding the 
Bank One ATM claim. To my knowledge, the publically reported Banks 
affected were Bank of America and Washinton Mutual. 

Also, to clarify, Bank One is currently the Nations 6th largest bank, 
with Citigroup holding the No. 1 spot both nationally and 
internationally. Even after the expected successful merger with JPMC 
is completed, the combined entity will tenuously hold the No. 2 spot.

Just like to get the facts straight.

Thanks.

roman draconus

He who fights with monsters might take care lest he thereby become a
monster. And if you gaze for long into an abyss, the abyss gazes also
into you.
              -Friedrich Nietzsche, Jenseits von Gut und Bose(1886)



---------------------------------------------------------------------------
You're a pen tester, but is google.com still your R&D team?
Now you can get trustworthy commercial-grade exploits and the latest
techniques from a world-class research group.
www.coresecurity.com/promos/sf_ept1
----------------------------------------------------------------------------


Current thread: