InformationSecurity inTanzania

This Blog is informational and intended to provide info to my friends, clients,and other Security Guru's out there.It is for all those who wish to improve the state of "Unawareness" of Information Security In Tanzania. Its my Passion that all my country men learn and protect themselves from all kinds of 21"st century Information and Data Theft. Be Prepared. "CHANCE FAVORS THE PREPARED MIND"

Saturday, March 13, 2010

website

website www.mashule.com

Tuesday, February 06, 2007

www.tenderjumla.com

www.tenderjumla.com.

Sunday, August 13, 2006

Online Banking

Those banks that have online banking ,may very well be advised to take heed here in Tanzania.


HSBC -Uk is to review its online security after researchers at Cardiff University found a loophole which could allow access to customers' online accounts.

A bank spokesman said the loophole had not been used by fraudsters and was not a viable way for a hacker to steal.

But he added the bank would now "look at different ways of doing things".

Meanwhile, an independent security expert urged HSBC and other banks to tighten security to prevent customer accounts being accessed by fraudsters.

Loophole

The reality is that it would be more profitable for that fraudster to concentrate his or her efforts elsewhere
HSBC spokesman

Q&A: Web banking security

The flaw - exposed by researchers at Cardiff University's school of computer science - centres on the way HSBC customers access their online banking service.

It relies on "keyloggers" - gadgets or software which capture the keystrokes made on a particular computer - which can enable a hacker to work out the information needed to successfully log onto an account within a few attempts.

According to the research, it was possible with the help of a keylogger to access customer accounts in just nine attempts.

"Nine attempts suggests that HSBC's system is not robust enough," Michael Panhallurick, computer forensic manager at the Risk Advisory Group, told BBC News.

In response, a HSBC spokesman told BBC News that loophole exposed by the researchers was "not a viable route for fraudsters".

"It involves a fraudster targeting a single customer over the course of a few days," he said.

"The reality is that it would be more profitable for that fraudster to concentrate his or her efforts elsewhere."


The more layers of security you have in place the more likely you are to deter the fraudsters
Michael Panhallurick, Risk Advisory Group

The spokesman added that online fraud was "a very, very minor part of the fraud that we see, a far bigger problem is people disposing of bank letter and utility bills inappropriately."

Bank statements and utility bills are often used by fraudsters to perpetrate identity fraud.

Experts warn that a cracked bank account could also be used in a wider identity theft scam without necessarily involving large-scale theft direct from the account.

In addition, cracked accounts could be used to assist with money-laundering.

Determined hackers

Mr Panhallurick told BBC News that few online bank accounts were safe from determined hackers.

"Most home computers are vulnerable to dangerous software such as spyware and keyloggers.

"Banks, therefore, need to ensure they have multiple identity and password checks in place.

"After all, the more layers of security you have in place the more likely you are to deter the fraudsters... they will move on elsewhere."

DarwinsNighmare - The Truth.....

I firmly oppose the misinformation of the World in the movie portrayed by the director of the Darwins nightmare.
Of this am passionate and have no political or other reasons other than the facts being twisted.
I have always said and I quote:' a little knowledge is dangerous ,especially when mixed with a hyperactive imagination'.
Although there may be element s of truth in the movie the whole motive and gist of the movie from the start was malintentioned.

Tuesday, April 18, 2006

Atm Woes!

Last week i got a complaint 4rm a friend of mine.
His wife had her money withdrawn from her card .
I am a very strong security advocate and I cant begin to stress its importance.
It turns out she did share her PIN number ,actually went with her younger brother to the bank ATM and asked him to help her withdraw some cash since she waz in a hurray and didnt wanna line up!!!
How dump is that! Anyway all he needed to do after 4 mths down the line was to wait for an opportunity to steal her card which He did!!
Beware who is looking over your shoulder at the atm and never never share your pin with anyone ,unless of course you dnt mind sharing your cash!

Sunday, April 02, 2006

Online Banking in Tanzania

With more and more banks turning to online services its just a matter of time that the information thiefs shall set base here too.
Consumers need to be sensitised and made aware of the phishing scams and dangers out there.
How safe is your pc or laptop when accessing your account details in a internet-cafe, hotspot...Whats this spyware and spamware business?
What do https and the paddlock sign have to do with online security?
Information security is a serious thing and as such we at TechnoconsultInternational Ltd are beginning to train and create awareness programes for companies and consumers alike.
Other isssues like ATM -security are also covered.
You are welcome to inquire.
Send me a comment thru this blog I ll get back to you;
or mail:pbaziwe@gmail.com
Data security starts with People ..........they are the weakest link!

Monday, March 27, 2006

Information Security for SME in tanzania

I shall be presenting a paper on this topic soon in Dar.
Many companies here can be classied fied in the sme category.
I shall further classify them as companies/organisations with stand alone computer systems .those with networked systems .
I shall also discuss Informtion security as it pertains to the Internet and hopefully lastly in wireless/mobility world .
I hope it all goes well.
Today i heard about the on going card leaks in the banks and cradit data institutions and cant help but notice a similar trend shall break out here.
This presentation shall be part of the Information security awareness programme that I am planning to launch
Karibu wote

Tuesday, January 17, 2006

Cisco Advisory

Cisco released an advisory which affects many networks here in Dar es salaam since I have seen the use of lots of Cisco Ap's in town.
A successful dos attack can be mounted in the following:
Cisco Aironet 1400 Series Wireless Bridges

Cisco Aironet 1300 Series Access Points

Cisco Aironet 1240AG Series Access Points

Cisco Aironet 1230AG Series Access Points

Cisco Aironet 1200 Series Access Points

Cisco Aironet 1130AG Series Access Points

Cisco Aironet 1100 Series Access Points

Cisco Aironet 350 Series Access Points running IOS
All sysadmins, IT mgrs and Security Bofhs ; take note.

I shall also upload a pix of the dar stumbling done at random over the weekend!