Great Security System, Safely Customer..
Written by : Wulandariyanny
NIM : C1L009010The security system is the most crucial security banking system, as can be imagined if the banking institution has a weak security system it will be detrimental to the client and the bank will lose reliance from client. Security system which will be highlight in this article is the Internet Banking System.
The problems that can be arise in electronic transaction there are :
1. Risk of transaction based on internet
a. Spoofing. This is one of the web
site creation to
copy all the existing pages, so it can make the site illegal
In fact, haker received illegal credit card numbers by setting up the reservoirs.
b. Unauthorized disclosure. When information is being transmitted to the Internet Banking system
unsafely, haker can
intercept the transmissions
containing sensitive data from the customer.
c. Data alteration. Changes to the database, either a username, password or account
number from the
entry of someone who was not invited to the Internet
Banking system.
2. Security problems on internet banking system
The problem that often occurs is when there is a connection on the Internet. Security issues can be grouped into three namely:
a. Security Type 1: PC Client to Web Server
Here is concentrated on the safety of the information contained browser client to the bank's web server. When there is a connection between the browser and web server at risk such as Network Packet Sniffing. A network protocol activity, how a package is labeled and identified.
So the computer can consider whether the package has been correctly identified. Because the specification of network protocols such as TCP / IP has been used widely, a specific program can easily prevent network packets and turn it into a sniffer.
Type 1 security solutions, namely the security of the customer's browser to the web server can be resisted by the security protocol called Secure Socket Layer (SSL). Consists of SSL encryption, and authentification server messege integrity in connect with the Internet. In fact, SSL provides security building'' handshake'' is used to identify a connection.
This handshake results in the client server agree to use the level of security they use and does all the required data into the Internet connection. For a while only Netscape Navigator and Internet Explorer support SSL, while E-Commerce sites were mostly uses SSL to keep the information confidential.
So the computer can consider whether the package has been correctly identified. Because the specification of network protocols such as TCP / IP has been used widely, a specific program can easily prevent network packets and turn it into a sniffer.
Type 1 security solutions, namely the security of the customer's browser to the web server can be resisted by the security protocol called Secure Socket Layer (SSL). Consists of SSL encryption, and authentification server messege integrity in connect with the Internet. In fact, SSL provides security building'' handshake'' is used to identify a connection.
This handshake results in the client server agree to use the level of security they use and does all the required data into the Internet connection. For a while only Netscape Navigator and Internet Explorer support SSL, while E-Commerce sites were mostly uses SSL to keep the information confidential.
b. Type 2 Security: Security in Environmental Systems
Safety of type 2 is a data security on the Internet Banking server and back-end server from the Internet
Banking system. Without proper data security risks such as possible occur:
- Network Packet Sniffer. An attacker had broken into the customer account information that was running the network. The worst you can access all the customer's account and can create an account through a'' backdoor'' illegally into the bank network. Furthermore, packet-sniffers provides information about the tissue bank network, can be subjected to an attacker to send a network packet that is distributed over the network-owned bank.
- IP Spoofing. This can be used to access customer account information in different ways. Usually via e-mail facility Internet Banking web site.
- Denial of Service Attacks. In this way aims to disrupt any access or information in the network. The attacker can create a focus for services not in accordance with the usual.
2 types of security solutions using a full selection of data security risks when put out of place. Secure means to enter the server requires more than authentification verification. The solution is to use firewall technology. Firewalls can be implemented by software or hardware or both. Firewall has always been used to prevent a person or program that is not invited.
- Network Packet Sniffer. An attacker had broken into the customer account information that was running the network. The worst you can access all the customer's account and can create an account through a'' backdoor'' illegally into the bank network. Furthermore, packet-sniffers provides information about the tissue bank network, can be subjected to an attacker to send a network packet that is distributed over the network-owned bank.
- IP Spoofing. This can be used to access customer account information in different ways. Usually via e-mail facility Internet Banking web site.
- Denial of Service Attacks. In this way aims to disrupt any access or information in the network. The attacker can create a focus for services not in accordance with the usual.
2 types of security solutions using a full selection of data security risks when put out of place. Secure means to enter the server requires more than authentification verification. The solution is to use firewall technology. Firewalls can be implemented by software or hardware or both. Firewall has always been used to prevent a person or program that is not invited.
c. Security Type 3: Prevention
of Entry of People Not Invited
It is important to monitor or prevent those who are not invited. The solution, by analyzing the security system on an ongoing basis and fix the errors that arise. Look at a picture of security measures that occur in online transactions. The action was very likely used in the bank's Internet Banking System.
It is important to monitor or prevent those who are not invited. The solution, by analyzing the security system on an ongoing basis and fix the errors that arise. Look at a picture of security measures that occur in online transactions. The action was very likely used in the bank's Internet Banking System.
Reference : Suwarno, S.Si, M.Kom / Universitas AKI Semarang -35
Harian Suara Merdeka
http://keamananinternet.tripod.com/keamanan-internet-banking.html
http://keamananinternet.tripod.com/keamanan-internet-banking.html

