JPMorgan data breach entry point identified


  • TECH
  • Tuesday, 23 Dec 2014

LAX SECURITY: The JPMorgan Chase bank was vulnerable to hackers as it did not use a double authentication scheme.

A computer breach at JPMorgan Chase & Co earlier this year could have been avoided if the bank had installed a simple security fix to an overlooked server in its network, the New York Times reported, citing people briefed on investigations.

In October, JPMorgan Chase revealed that names, addresses, phone numbers and e-mail addresses of the holders of some 83 million accounts were exposed when the bank's computer systems were compromised by hackers, making it one of the biggest data breaches in history.

The weak spot at the bank appears to have been a very basic one – the bank did not use a double authentication scheme, known as two-factor authentication, the paper reported.

JPMorgan's security team had apparently neglected upgrading one of its network servers with the dual password scheme, the newspaper said, citing people who did not want to be identified because the investigation into the attack was incomplete.

Officials at JP Morgan were not immediately available for comment outside regular US business hours.

Earlier this month, US regulators said they were stepping up efforts to examine financial institutions' defences to ward off cyber attacks, as a top FBI official warned of new "increasingly complex" threats to the financial sector. — Reuters

Limited time offer:
Just RM5 per month.

Monthly Plan

RM13.90/month
RM5/month

Billed as RM5/month for the 1st 6 months then RM13.90 thereafters.

Annual Plan

RM12.33/month

Billed as RM148.00/year

1 month

Free Trial

For new subscribers only


Cancel anytime. No ads. Auto-renewal. Unlimited access to the web and app. Personalised features. Members rewards.
Follow us on our official WhatsApp channel for breaking news alerts and key updates!
   

Next In Tech News

Battery firm LG Energy Solution Q1 profit plunges on weak EV sales
SK Hynix expects full chip recovery after Q1 earnings surprise on AI boom
Cisco says hackers subverted its security devices to spy on governments
Disappointing Meta forecast pulls down tech peers in extended trade
IBM to buy HashiCorp in $6.4 billion deal to expand in cloud
Meta shares sink on higher AI spending, light revenue forecast
TSMC says 'A16' chipmaking tech to arrive in 2026, setting up showdown with Intel
TikTok artists and advertisers to stay with app until 'door slams shut'
TikTok to suspend TikTok Lite's reward programme amid EU concerns
ASML approves Christophe Fouquet as CEO at annual meeting

Others Also Read