Welcome | Sign In
ECommerceTimes.com
Security

Hackers Defraud Online Brokerages of Millions of Dollars

Print Version
E-Mail Article
Reprints
Hackers Defraud Online Brokerages of Millions of Dollars

Two of the largest e-brokerage firms, E-Trade Financial and Ameritrade, reported this week that computer hacking incidents have resulted in millions of dollars of losses to the firms, which have reimbursed affected customers. Ameritrade said much of the fraud occurred overseas while clients were using public computers; fraud committed against E-Trade customers appeared to be concentrated in Thailand and eastern Europe.


Is Your Website Killing Customer Confidence?
Your Website's privacy policy can be a key factor in a customer's decision to do business with you, and it is vital to ensuring you don't run afoul of your online legal and regulatory responsibilities. Need more reasons? Read on.

Government officials have launched investigations into fraud cases that are costing electronic brokerages millions of dollars.

Two of the largest e-brokerages are reporting computer hacking incidents in which criminals apparently manipulated client accounts at TD Ameritrade and E-Trade Financial.

TD Ameritrade estimates its third quarter losses at US$4 million. E-Trade revealed last week that the company lost about $18 million to fraudsters between July and September. The largest brokerage, Charles Schwab (Nasdaq: SCHW), said its losses were not significant enough to disclose on its financial reports.

The Root of the Problem

Ameritrade and E-Trade could not immediately be reached for comment, but the firms have said publicly that their internal computer systems have not been hacked.

Ameritrade also reported that much of the fraud occurred overseas while clients were using public computers infected with spyware or wireless connections. User IDs and passwords were stolen.

Fraud committed against E-Trade customers appeared to be concentrated in Thailand and eastern Europe, Chief Executive Mitchell Caplan told analysts during a conference call last week.

Illustrating a Negative Trend

TD Ameritrade and E-Trade reimbursed customers for their losses in what appears to be an industrywide plague. The trend coincides with data that security software maker Symantec (Nasdaq: SYMC) released last month: hackers are increasingly turning their attention to financial services firms.

In fact, according to Symantec's latest Internet Security Threat Report covering new and ongoing security threats from Jan. 1, 2006 through June 30, 2006, financial services businesses were most heavily targeted by phishing attacks, with those firms' sites sites accounting for 84 percent of all phishing-targeted sites Symantec tracked.

The Federal Bureau of Investigations and the Securities Exchange Commission are investigating the brokerage fraud cases, but neither organization was immediately available for comment.

A Deeper Issue

Identity theft is still the chief concern among consumers contacting the Federal Trade Commission. However, the greater risk to falling victim to identity thieves occurs offline.

Indeed, headlines may talk of phishing e-mails, keylogging software and database breaches, but more than 90 percent of identity fraud starts offline in the form of misplaced passwords, stolen bank statements and other paper documents, according to Javelin Strategy & Research.

A 2005 Javelin survey reveals that for half of the victims of identity-based fraud who knew where their information had been obtained, the most common source was a "lost or stolen wallet, checkbook or credit card."

The Big Picture

"Clearly, people still need to be careful in all of their dealings, but the largest area of risk is still paper-based risk and it's friends and family and people you know," Anne Wallace, executive director of the Identity Theft Assistance Center, told the E-Commerce Times.

"The key message for consumers is really to think about your personal information as money because it is in a sense," she continued. "Identity thieves access to your assets comes through personal information."

In the grand scheme of risk management, Wallace is concerned that consumers may not be focusing on where the real risks are, which could cause identity theft rates to continue rising. With Javelin reporting that victims of identity theft lost a collective $56.5 billion last year, that's not good news for consumers, financial service firms, or the agencies who insure them.


Print Version E-Mail Article Reprints More by Jennifer LeClaire


More by Jennifer LeClaire

The Digital Car: Cool Automotive Accessories, Part 2
January 16, 2007
Not all the latest high-tech automotive electronics are built to entertain. Many give the driver more information and more control. Vehicle tracking devices can tell where the car is at any time, software installed in a smartphone can turn off a vehicle's security system whenever the owner approaches, and diagnostic tools can tell what's wrong with the engine -- and how much it'll be to fix it.
'World of Warcraft' Wows 8 Million Subscribers
January 12, 2007
"World of Warcraft," the massively multiplayer online role-playing game, has reached the 8 million subscriber mark. Since debuting in North America in Nov. 2004, "World of Warcraft" has become the most popular MMORPG in the world. The franchise is available in seven different languages and is played on at least four continents.
AT&T Bids Goodbye to Cingular Brand
January 12, 2007
Starting Monday, AT&T will launch a multimedia campaign to transition the Cingular Wireless brand name into its advertising and customer communications. The campaign will integrate popular imagery, phrases and icons from Cingular's traditional advertising, including the "raising the bar" tagline, the "Jack" character and the color orange.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network