07 January 2016

Santander denies online banking hack

19 April 2011  |  13205 views  |  0 biometric eye

Santander has denied that cybercrooks have hijacked the online banking login page of its Alliance & Leicester unit.

Alarm bells were sounded yesterday when an A&L customer took to technology and programming forums at Stack Overflow and Linode over security concerns with the site.

The customer says he was prompted with a SSL certificate warning for 'www.polycache.com' when attempting to log in to A&L Internet banking via FireFox 4.

Forum members worked to unravel the mystery and decipher the JavaScript. The issue was picked up by Finextra blogger Adam Nybäck who notes that it appeared that at the heart of the matter lies an injection which tries to look like an ordinary web analytics URL.

"It goes to a script at advanced-web-analytics.com which downloads another script from polycache.com which seems to hijack the login part of the site," says Nybäck.

However, Santander has told Finextra that the problem seems to be the result of a "technical failure" at a third party it taps for its online banking systems.

Says a spokesman: "This is currently being investigated further. However, Santander can confirm that neither its website nor the A&L website have been hacked and customer data has not been compromised."

Comments: (0)

Comment on this story (membership required)
Log in to receive notifications when someone posts a comment

Finextra news in your inbox

For Finextra's free daily newsletter, breaking news flashes and weekly jobs board, sign up now.

Related stories

18 March, 2011
12 August, 2010
21 April, 2010
28 October, 2009
14 July, 2008

Related company news

 

Who is commenting?

Finextra Member Commented on: Has the adoption of co...
Finextra Member Commented on: Payments - Looking bac...
Finextra Member Commented on: Will 2016 be the most...
Finextra Member Commented on: Appetite for cash rema...
Finextra Member Commented on: MasterCard and Samsung...

Top topics

Most viewed Most shared
Crazy fintech predictions for 2016
14490 views comments | 91 tweets | 55 linkedin
MasterCard and Samsung unveil pay-by-fridg...
6905 views comments | 29 tweets | 30 linkedin
Nasdaq sees in the New Year with first blo...
6527 views comments | 31 tweets | 31 linkedin
Blockchain consortium R3 begins recruitmen...
5778 views comments | 16 tweets | 11 linkedin
Orange to expand into banking with majorit...
5632 views comments | 24 tweets | 40 linkedin

Featured job

£100,000 basic, £180,000 OTE + Benefits
London

Find your next job