top | item 44684688

(no title)

iury-sza | 7 months ago

> Wasn't BCB breached for a couple hundred million reais this month, as well? Maybe they are trying to keep the code closed because they know it's insecure

It wasn't a BCB breach. The issue was with an integrator. Like a client API built on top of it that provided banking features to fintech startups

discuss

order

xinayder|7 months ago

And it was only breached because criminals approached an IT guy from the affected bank and offered him R$5000 to hand out the passwords used to login to their internal systems. Once the hackers were inside, they had control of bank accounts and started moving money around.

So no, it wasn't a breach to BCB, neither it was caused by system insecurity, but rather, human error in a downstream implementation.