The Business Times
SUBSCRIBERS

Overlooked server behind data breach at JPMorgan Chase

Security team had apparently neglected to upgrade a network server with the dual password scheme, leaving the bank vulnerable to intrusion

Published Tue, Dec 23, 2014 · 09:50 PM
Share this article.

New York

THE computer breach at JPMorgan Chase this summer - the largest intrusion of a US bank to date - might have been thwarted if the bank had installed a simple security fix to an overlooked server in its vast network, said people who have been briefed on internal and outside investigations into the attack.

Big corporations like JPMorgan spend millions - US$250 million in the bank's case - on computer security every year to guard against increasingly sophisticated attacks like the one on Sony Pictures. But the weak spot at JPMorgan appears to have been a very basic one, the people said. They did not want to be identified publicly because the investigation into the attack is incomplete.

The attack against the bank began last spring, after hackers stole the login credentials for a JPMorgan employee, these people said. Still, the attack could have been stopped the…

BT is now on Telegram!

For daily updates on weekdays and specially selected content for the weekend. Subscribe to  t.me/BizTimes

Technology

SUPPORT SOUTH-EAST ASIA'S LEADING FINANCIAL DAILY

Get the latest coverage and full access to all BT premium content.

SUBSCRIBE NOW

Browse corporate subscription here