Unfixed HSBC scripting flaws put customers at risk

Unfixed HSBC scripting flaws put customers at riskMeet Jen from the Problem Solvers Team

Hi, I'm Jen and I'm here to help. Submit your complaint here or get help here

Several HSBC websites are subject to scripting flaws that create a possible mechanism for crooks to create more convincing phishing scams. Security blog xssed.com has posted a list of affected domains, which include HSBC sites in multiple territories including the UK. Xssed has been tracking problems on the bank’s sites since last year. The bank has been taking up to two months to fix problems, with issues pointed out to it in May still unresolved. Xssed came right out and said “Protect your customers’ privacy and security now! Leaving site-specific vulnerabilities open for days, weeks or months, can lead to substantial financial losses!”

Sadly, the main HSBC website at www.HSBC.com was vulnerable but the problem was fixed in 2007. That is the flagship HSBC website for the world. We — as well as HSBC — caution everyone to be careful, examining the validity of emails and calling for help if there exists any doubt about the security of your online transactions. HSBC is similar to eBay as programmers give new “improvements” to customers while breaking other areas that were once very functional. Maintaining websites for one of the largest banks in the world is difficult at best and we respect those behind the scenes. Just get the problems fixed if you will, and do so in a timely manner.

This article, Unfixed HSBC scripting flaws put customers at risk, is just one of our articles from our Bank Horror Stories, HSBC Secrets Part 3

Bank Horror Stories monitors banking problems and customer complaints and has done so since 1999. Writers hold no stock positions. Some material is used under the fair use copyright act.

We use Thomson Reuters News Service Calais in all production material but are not associated with Thomson Reuters, banks, or financial institutions in any way.

The Lender Watch Network
Bank Horror StoriesHSBC Secrets Part 3
Jen's Problem SolversMost Popular In Google Selected Articles
Unfixed HSBC scripting flaws put customers at risk

database Super-Search Need more? Search all databases