{"id":1496,"date":"2015-08-26T03:47:06","date_gmt":"2015-08-25T19:47:06","guid":{"rendered":"http:\/\/staging.bankvaultonline.com\/?p=1496"},"modified":"2015-08-26T03:47:06","modified_gmt":"2015-08-25T19:47:06","slug":"classics-the-2011-rsa-hack","status":"publish","type":"post","link":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/","title":{"rendered":"Classic Hacks: The 2011 RSA SecurID Attack"},"content":{"rendered":"

In 2011 RSA Security \u2013 the folks who provide the SecurID 2 factor authentication devices to millions of people \u2013 was hacked by a phishing email. This is an important hack to remember for three reasons.<\/p>\n

One, the phishing email was primitive and should have been seen for what it was \u2013 a fake.<\/p>\n

Two, the attack demonstrates that even security companies are vulnerable to simple social engineering techniques.<\/p>\n

Three, a common form of 2-Factor authentication was compromised, possibly leaving many millions of users at risk.<\/p>\n

Hackers sent RSA employees two emails over two days. One was from \u2018webmaster\u2019 at a fake beyond.com site. The subject line said, \u20182011 staffing plan.\u2019 Upon opening the email, targets saw an attached excel spreadsheet titled, \u20182011 staffing plan.’<\/p>\n

From there, all that needed to happen was to click the MS Excel file.<\/p>\n

If the recipient clicked on the attachment an Excel spreadsheet opened, which was completely blank except for an “X” that appeared in the first box of the spreadsheet. The “X” was the only visible sign that there was an embedded Flash exploit in the spreadsheet.<\/p>\n

When the spreadsheet opened, Excel triggered the Flash exploit to activate, which then injected a backdoor — in this case a backdoor known as Poison Ivy — onto the system. From there, the hackers could remotely control the machine, reaching the systems and data they sought.<\/p>\n

The true impact of this hack has never been fully explained by RSA. We do know that they spent upwards of $66 million recovering from the hack.<\/p>\n

What is striking is how easily a security company was compromised \u2013 and how deeply.<\/p>\n

Employees, via social engineering, were once again shown to be the easiest entry point for hackers.<\/p>\n","protected":false},"excerpt":{"rendered":"

In 2011 RSA Security \u2013 the folks who provide the SecurID 2 factor authentication devices to millions of people \u2013 was hacked by a phishing email. This is an important hack to remember for three reasons. One, the phishing email was primitive and should have been seen for what it was \u2013 a fake. Two, […]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[37],"tags":[123,124,50,125,126,127],"class_list":["post-1496","post","type-post","status-publish","format-standard","hentry","category-security-news","tag-classic-hacks","tag-flash-exploits","tag-phishing","tag-poison-ivy","tag-rsa-2011-hack","tag-securid"],"yoast_head":"\nClassic Hacks: The 2011 RSA SecurID Attack - BankVault<\/title>\n<meta name=\"description\" content=\"One of the most famous hacks in history was the RSA SecurID attack. Read this to find out more about how this cybercrime case happened!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Classic Hacks: The 2011 RSA SecurID Attack - BankVault\" \/>\n<meta property=\"og:description\" content=\"One of the most famous hacks in history was the RSA SecurID attack. Read this to find out more about how this cybercrime case happened!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/\" \/>\n<meta property=\"og:site_name\" content=\"BankVault\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/BankVaultOnline\/\" \/>\n<meta property=\"article:published_time\" content=\"2015-08-25T19:47:06+00:00\" \/>\n<meta name=\"author\" content=\"BankVault\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@bankvaultonline\" \/>\n<meta name=\"twitter:site\" content=\"@bankvaultonline\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"BankVault\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"1 minute\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Classic Hacks: The 2011 RSA SecurID Attack - BankVault","description":"One of the most famous hacks in history was the RSA SecurID attack. Read this to find out more about how this cybercrime case happened!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/","og_locale":"en_US","og_type":"article","og_title":"Classic Hacks: The 2011 RSA SecurID Attack - BankVault","og_description":"One of the most famous hacks in history was the RSA SecurID attack. Read this to find out more about how this cybercrime case happened!","og_url":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/","og_site_name":"BankVault","article_publisher":"https:\/\/www.facebook.com\/BankVaultOnline\/","article_published_time":"2015-08-25T19:47:06+00:00","author":"BankVault","twitter_card":"summary_large_image","twitter_creator":"@bankvaultonline","twitter_site":"@bankvaultonline","twitter_misc":{"Written by":"BankVault","Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/#article","isPartOf":{"@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/"},"author":{"name":"BankVault","@id":"https:\/\/www.bankvault.com\/#\/schema\/person\/76e0aa85d5ac5405b47c0760eb9ab639"},"headline":"Classic Hacks: The 2011 RSA SecurID Attack","datePublished":"2015-08-25T19:47:06+00:00","dateModified":"2015-08-25T19:47:06+00:00","mainEntityOfPage":{"@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/"},"wordCount":286,"commentCount":0,"publisher":{"@id":"https:\/\/www.bankvault.com\/#organization"},"keywords":["classic hacks","flash exploits","phishing","poison ivy","RSA 2011 hack","SecurID"],"articleSection":["IT security news"],"inLanguage":"en-AU","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/","url":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/","name":"Classic Hacks: The 2011 RSA SecurID Attack - BankVault","isPartOf":{"@id":"https:\/\/www.bankvault.com\/#website"},"datePublished":"2015-08-25T19:47:06+00:00","dateModified":"2015-08-25T19:47:06+00:00","description":"One of the most famous hacks in history was the RSA SecurID attack. Read this to find out more about how this cybercrime case happened!","breadcrumb":{"@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/#breadcrumb"},"inLanguage":"en-AU","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.bankvault.com\/classics-the-2011-rsa-hack\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.bankvault.com\/"},{"@type":"ListItem","position":2,"name":"Classic Hacks: The 2011 RSA SecurID Attack"}]},{"@type":"WebSite","@id":"https:\/\/www.bankvault.com\/#website","url":"https:\/\/www.bankvault.com\/","name":"BankVault","description":"cybersecurity","publisher":{"@id":"https:\/\/www.bankvault.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.bankvault.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-AU"},{"@type":"Organization","@id":"https:\/\/www.bankvault.com\/#organization","name":"BankVault","url":"https:\/\/www.bankvault.com\/","logo":{"@type":"ImageObject","inLanguage":"en-AU","@id":"https:\/\/www.bankvault.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.bankvault.com\/wp-content\/uploads\/2018\/11\/BankVault-Logo-Light.png","contentUrl":"https:\/\/www.bankvault.com\/wp-content\/uploads\/2018\/11\/BankVault-Logo-Light.png","width":1212,"height":275,"caption":"BankVault"},"image":{"@id":"https:\/\/www.bankvault.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/BankVaultOnline\/","https:\/\/x.com\/bankvaultonline"]},{"@type":"Person","@id":"https:\/\/www.bankvault.com\/#\/schema\/person\/76e0aa85d5ac5405b47c0760eb9ab639","name":"BankVault","image":{"@type":"ImageObject","inLanguage":"en-AU","@id":"https:\/\/www.bankvault.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/?s=96&d=mm&r=g","caption":"BankVault"},"url":"https:\/\/www.bankvault.com\/author\/bankvault\/"}]}},"_links":{"self":[{"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/posts\/1496","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/comments?post=1496"}],"version-history":[{"count":0,"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/posts\/1496\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/media?parent=1496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/categories?post=1496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.bankvault.com\/wp-json\/wp\/v2\/tags?post=1496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}