UniCredit
July 16, 2015
•[ hack, malware, finance ]
Cyphort Labs discovered a malware infection at the Ukrainian website of UniCredit bank: unicredit.ua.
Insurance Services Office
July 14, 2015
•[ hack, finance ]
New Jersey-based Insurance Services Office (ISO) notifies an undisclosed number of consumers of an unauthorized access to the database.
Qatar National Bank
July 1, 2015
•[ hack, sqlinjection, finance ]
In July 2015, the Qatar National Bank suffered a data breach which exposed 15k documents totalling 1.4GB and detailing more than 100k accounts with passwords and PINs. The incident was made public some 9 months later in April 2016 when the documents appeared publicly on a file sharing site. Analysis of the breached data suggests the attack began by exploiting a SQL injection flaw in the bank's website.
Bitfinex
May 22, 2015
•[ hack, finance ]
Bitfinex, a Bitcoin wallet, announces to have been hacked, and asks all customers to cease depositing cryptocurrency to old deposits addresses. The impact of the breach is relatively small (0.5% of total funds).
Retail Capital
May 5, 2015
•[ hack, misconfiguration, finance ]
Retail Capital notifies more than 700 individuals that unauthorized access was gained to the electronic mailbox of a sales manager, and personal information may have been compromised.
Federal Reserve Bank of St. Louis
April 24, 2015
•[ hack, phishing, finance ]
The Federal Reserve Bank of St. Louis notifies the individuals using its services that on April 24, 2015, unknown hackers manipulated the DNS to redirect some of the Bank's web traffic to rogue webpages.
Cryptoine
March 26, 2015
•[ hack, finance ]
Cryptoine, a cryptocurrency exchange site, is hacked and has its wallets emptied.
AllCrypt
March 17, 2015
•[ hack, finance ]
Allcrypt, a cryptocurrency exchange site, is hacked and has its wallets emptied.
Rapides Parish Police Jury
March 7, 2015
•[ hack, misconfiguration, government ]
The actions of the hacktivist group AnonGhost are not isolated: now they deface the official website of the state of Louisiana Rapides Parish Police Jury, Southern Heritage Bank and Churchill Banks.
Walters McCann Fanska
March 4, 2015
•[ hack, finance ]
Accounting firm Walters McCann Fanska notifies clients that their personal and financial account information may have been acquired by hackers who had access to the firm's network
Arab National Bank
February 23, 2015
•[ hack, ddos, finance ]
In the name of OpSaudi, The Oppressed Defenders take down the online banking domain of Arab National Bank.
Cavirtex
February 19, 2015
•[ hack, finance ]
Canadian Bitcoin exchange Cavirtex shuts down, after hackers managed to compromise its systems, stealing hashed passwords and two factor authentication (2FA) secrets.
MyFHA
February 18, 2015
•[ leak, finance ]
In approximately February 2015, the home financing website MyFHA suffered a data breach which disclosed the personal information of nearly 1 million people. The data included extensive personal information relating to home financing including personal contact info, credit statuses, household incomes, loan amounts and notes on personal circumstances, often referring to legal issues, divorces and health conditions. Multiple parties contacted HIBP with the data after which MyFHA was alerted in mid-July and acknowledged the legitimacy of the breach then took the site offline.
AlJazira
February 17, 2015
•[ hack, ddos, finance ]
As part of OpSaudi, a group of hacktivists calling themselves "The Oppressed Defenders" takes down the Saudi Arabian bank AlJazira.
Bter
February 14, 2015
•[ hack, financial, finance ]
China-based Bitcoin exchange Bter is hacked on Valentine's Day and $1.75 million worth of Bitcoin (7,170 BTC) is stolen.
Standard Chartered Bank
February 14, 2015
•[ hack, financial, finance ]
The Pakistani branch of Standard Chartered Bank is hacked, and as a consequence many customers fall victim to illegitimate withdrawals from their bank accounts.
Boleto Bancario
February 12, 2015
•[ hack, phishing, finance ]
A new attack on Boletos, the Brazilian nation-wide payment system. This time the criminals poison the DNS entry used by a bank's website to redirect the users to a site controlled by them.
Anthem
February 5, 2015
•[ hack, finance ]
One of the largest US health insurers, Anthem, says it suffered a breach that exposed Social Security Numbers and other personal information for 80 million people, including its CEO. It is believed that Chinese hackers may be responsible for the hack.
validdumps
January 24, 2015
•[ hack, finance ]
An unknown hacker hacks validdumps.ru (a database of credit cards and Paypal accounts) and dumps 2,534 usernames and hashed passwords.
Aussie Travel Cover
January 20, 2015
•[ hack, finance ]
A hacker called abdilo (@abdilo_) claims responsibility for breaching the database of Australian travel insurer Aussie Travel Cover on December 18 last year. He claims to have exfiltrated 700,000 records.