{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,7]],"date-time":"2024-09-07T21:20:24Z","timestamp":1725744024171},"publisher-location":"Berlin, Heidelberg","reference-count":24,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642398834"},{"type":"electronic","value":"9783642398841"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-39884-1_27","type":"book-chapter","created":{"date-parts":[[2013,8,4]],"date-time":"2013-08-04T21:02:52Z","timestamp":1375650172000},"page":"322-328","source":"Crossref","is-referenced-by-count":23,"title":["How to Attack Two-Factor Authentication Internet Banking"],"prefix":"10.1007","author":[{"given":"Manal","family":"Adham","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Amir","family":"Azodi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yvo","family":"Desmedt","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ioannis","family":"Karaolis","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"27_CR1","unstructured":"Adham, M.: Barclays, NatWest and Halifax Internet Banking Security, with a Simulation of Browser Exploit, MSc Thesis, University College London (2011)"},{"key":"27_CR2","unstructured":"Azodi, A.: Simulation of an Attack on HSBC\u2019s Two-factor Authentication with Transaction Verification Online Banking System, MSc Thesis, University College London (2011)"},{"key":"27_CR3","unstructured":"Karaolis, I.: Automating the Hacking of Internet Banking: Simulation of an Attack for ...5 Internet Banking, MSc Thesis, University College London (2011)"},{"key":"27_CR4","unstructured":"Mozilla\u00a0Developer\u00a0Centre. Extensions, \n                    \n                      https:\/\/developer.mozilla.org\/en-US\/docs"},{"key":"27_CR5","unstructured":"Chechik, D.: Malware Analysis Trojan Banker URLZone\/Bebloh (September 2009), \n                    \n                      http:\/\/goo.gl\/z7YSV"},{"key":"27_CR6","unstructured":"Chou, D.: Strong User Authentication on the Web (August 2008), \n                    \n                      http:\/\/goo.gl\/6xbky"},{"key":"27_CR7","unstructured":"Estehghari, S., Desmedt, Y.: Exploiting the client vulnerabilities in internet E-voting systems: hacking Helios 2.0 as an example. In: Proceedings of the 2010 International Conference on Electronic Voting Technology\/Workshop on Trustworthy Elections, EVT\/WOTE 2010, pp. 1\u20139 (2010)"},{"key":"27_CR8","unstructured":"PistonHeads\u00a0Web\u00a0Forum. Barclays PINsentry, what a dumb POS (2008), \n                    \n                      http:\/\/goo.gl\/wRoJV"},{"issue":"9","key":"27_CR9","doi-asserted-by":"publisher","first-page":"22","DOI":"10.1109\/MCOM.1985.1092640","volume":"23","author":"F.M.B. Greenlee","year":"1985","unstructured":"Greenlee, F.M.B.: Requirements for key management protocols in the wholesale financial services industry. IEEE Communications Magazine\u00a023(9), 22\u201328 (1985)","journal-title":"IEEE Communications Magazine"},{"key":"27_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"89","DOI":"10.1007\/11507840_9","volume-title":"Financial Cryptography and Data Security","author":"M. Jakobsson","year":"2005","unstructured":"Jakobsson, M.: Modeling and Preventing Phishing Attacks. In: S. Patrick, A., Yung, M. (eds.) FC 2005. LNCS, vol.\u00a03570, p. 89. Springer, Heidelberg (2005)"},{"key":"27_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"235","DOI":"10.1007\/978-3-642-27576-0_19","volume-title":"Financial Cryptography and Data Security","author":"S. Li","year":"2012","unstructured":"Li, S., Sadeghi, A.-R., Heisrath, S., Schmitz, R., Ahmad, J.J.: hPIN\/hTAN: A Lightweight and Low-Cost E-Banking Solution Against Untrusted Computers. In: Danezis, G. (ed.) FC 2011. LNCS, vol.\u00a07035, pp. 235\u2013249. Springer, Heidelberg (2012)"},{"key":"27_CR12","doi-asserted-by":"crossref","unstructured":"Adham, M., Azodi, A., Desmedt, Y., Karaolis, I.: How To Attack Two-Factor Authentication Internet Banking (2013), \n                    \n                      http:\/\/goo.gl\/YsA6j","DOI":"10.1007\/978-3-642-39884-1_27"},{"key":"27_CR13","unstructured":"Microsoft Safety & Security Centre. Watch out for fake virus alerts, \n                    \n                      http:\/\/goo.gl\/YEZMT"},{"key":"27_CR14","unstructured":"Mills, E.: Banking Trojan steals money from under your nose (September 2009), \n                    \n                      http:\/\/goo.gl\/tuDfJ"},{"key":"27_CR15","unstructured":"moneysavingexpert Web\u00a0Forum. Stupid Barclays PINsentry Thingymajic. Can I Log Into My Online Account Without It? (2010), \n                    \n                      http:\/\/goo.gl\/eqaey"},{"key":"27_CR16","unstructured":"RSA\u00a0White\u00a0Paper. Making Sense of Man-in-the-browser Attacks: Threat Analysis and Mitigation for Financial Institutions (2010), \n                    \n                      http:\/\/goo.gl\/NRcez"},{"key":"27_CR17","unstructured":"Ragan, S.: Overview: Inside the Zeus Trojan\u2019s source code (May 2011), \n                    \n                      http:\/\/goo.gl\/nsvpG"},{"key":"27_CR18","unstructured":"RiskAnalytics LLC: $70 Million Stolen From U.S. Banks With Zeus Trojan (October 2010), \n                    \n                      http:\/\/goo.gl\/XkSgq"},{"key":"27_CR19","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"184","DOI":"10.1007\/978-3-642-03549-4_11","volume-title":"Financial Cryptography and Data Security","author":"S. Drimer","year":"2009","unstructured":"Drimer, S., Murdoch, S.J., Anderson, R.: Optimised to Fail: Card Readers for Online Banking. In: Dingledine, R., Golle, P. (eds.) FC 2009. LNCS, vol.\u00a05628, pp. 184\u2013200. Springer, Heidelberg (2009)"},{"issue":"4","key":"27_CR20","doi-asserted-by":"publisher","first-page":"136","DOI":"10.1145\/1053291.1053327","volume":"48","author":"B. Schneier","year":"2005","unstructured":"Schneier, B.: Two-Factor Authentication: Too Little, Too Late. Commun. ACM\u00a048(4), 136 (2005)","journal-title":"Commun. ACM"},{"key":"27_CR21","unstructured":"Symantec. Banking in Silence (June 2009), \n                    \n                      http:\/\/goo.gl\/aj61F"},{"key":"27_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-540-73614-1_1","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"M. Ter Louw","year":"2007","unstructured":"Ter Louw, M., Lim, J.S., Venkatakrishnan, V.N.: Extensible Web Browser Security. In: H\u00e4mmerli, B.M., Sommer, R. (eds.) DIMVA 2007. LNCS, vol.\u00a04579, pp. 1\u201319. Springer, Heidelberg (2007)"},{"key":"27_CR23","unstructured":"VASCO. DIGIPASS GO 3 (August 2012), \n                    \n                      http:\/\/goo.gl\/EmLFy"},{"key":"27_CR24","unstructured":"Marcus, D., Sherstobitoff, R.: Dissecting Operation High Roller (2012), \n                    \n                      http:\/\/www.mcafee.com\/us\/resources\/reports\/rp-operation-high-roller.pdf"}],"container-title":["Lecture Notes in Computer Science","Financial Cryptography and Data Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-39884-1_27","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,16]],"date-time":"2019-05-16T05:54:35Z","timestamp":1557986075000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-39884-1_27"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642398834","9783642398841"],"references-count":24,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-39884-1_27","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}