TD Canada Trust Hit By DDoS Attack

If you are a TD Canada Trust customer, you likely couldn’t get access to your accounts either by mobile or by web today due to a Distributed Denial Of Service Attack according to IT World Canada:

The service disruption was experienced around 10 a.m. by TD clients attempting to access their online accounts. As late as 3:30 pm today, some customers could still log into their accounts.

Now DDoS attacks are not new, but here’s why I’m writing about this at 10PM EST:

“This is very similar to the DDoS attack experienced by banks in South Korea,” according to Claudiu Popa, principal of Toronto-based IT security consultancy firm Informatica Corp., who tweeted about the disruption  he experienced first hand as he attempted to access his online account today. 

He said, it appears that attackers had targeted TD’s backend servers but have left the bank’s client-facing web site untouched.

“If you want to cause massive disruption but not steal any data, this is a smart move,” he said. “The site is still up but no transactions can take place because no one is able to log in.”

Is Claudiu Popa implying that someone has copied the tactics used by the North Koreans who were thought to be responsible for the attacks on South Korean banks and TV broadcasters? Or is he implying that the same people behind those attacks are behind this one. His comments could be read either way. I’ve reached out to Popa for a clarification. If I get a response, I’ll update this story.

Update: Here’s what Popa had to say to me: “The two attacks are similar in 3 ways: DoS, large bank, apparent purpose being a show of force. No other correlation.”

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading