본문 바로가기

광고

광고닫기

광고

본문

광고

미래&과학 과학

[Editorial] Gaping Holes in Internet Banking Security

등록 2005-06-04 07:45수정 2005-06-04 07:45

Four young people have been arrested for breaking into an internet financial transaction system using the most basic hacking technology. According to Friday's announcement by the Seoul Police Agency, they used a program that read users' user names, passwords, and their security certificate passwords from their computers. Their methods have rendered useless the four-level security procedure that starts with logging in, bank account passwords, security certificate password, and the bank's own security authorization card, and they are shocking because it was a simple interception of people's data by entered using their computers.

What must be guarded against at this point is extreme reactions of either encouraging baseless anxieties about internet banking or ignoring the problem as not that big a deal. What is needed right now is to carefully review what the holes in the system are. What the case shows is that the bank believed in the multi-level security system and then were negligent with the little loopholes that existed in each level. It demonstrates that when it comes to security the slightest lapse can lead to terrible results.

They say that this would not have happened if the site had been designed to establish a firewall automatically and if it had been made so that users were unable to stop the firewall from functioning. The security certificate process, an important security provision, is also a problem. The hackers took advantage of the fact that people could be reissued certificates by entering their Resident Registration Numbers without having to confirm whether they were really the name behind the number. Certificates are like "internet identity cards" and more than 10 million internet users have them, so the process urgently needs to be strengthened. Financial institutions need to work on their own firewalls and security cards. It must be realized that holes in the security of online financial transactions are a serious problem for having the potential to send the whole of the economy into a state of confusion.

The Hankyoreh, 4 June 2005.


[Translations by Seoul Selection (PMS)]



항상 시민과 함께하겠습니다. 한겨레 구독신청 하기
언론 자유를 위해, 국민의 알 권리를 위해
한겨레 저널리즘을 후원해주세요

광고

광고

광고

미래&과학 많이 보는 기사

과학자들은 외계인의 존재를 얼마나 믿을까? 1.

과학자들은 외계인의 존재를 얼마나 믿을까?

영양 가득 ‘이븐’하게…과학이 찾아낸 제4의 ‘달걀 삶는 법’ 2.

영양 가득 ‘이븐’하게…과학이 찾아낸 제4의 ‘달걀 삶는 법’

온 우주 102개 색깔로 ‘3차원 지도’ 만든다…외계생명체 규명 기대 3.

온 우주 102개 색깔로 ‘3차원 지도’ 만든다…외계생명체 규명 기대

2032년 소행성 충돌 위험 2.2%로 상승…지구 방위 논의 시작되나 4.

2032년 소행성 충돌 위험 2.2%로 상승…지구 방위 논의 시작되나

시금치·양파·고추…흰머리 덜 나게 해주는 루테올린의 발견 5.

시금치·양파·고추…흰머리 덜 나게 해주는 루테올린의 발견

한겨레와 친구하기

1/ 2/ 3


서비스 전체보기

전체
정치
사회
전국
경제
국제
문화
스포츠
미래과학
애니멀피플
기후변화&
휴심정
오피니언
만화 | ESC | 한겨레S | 연재 | 이슈 | 함께하는교육 | HERI 이슈 | 서울&
포토
한겨레TV
뉴스서비스
매거진

맨위로
뉴스레터, 올해 가장 잘한 일 구독신청