Monday, October 28, 2013

How safe is Malaysia Online Banking?

My friend posted an article regarding Maybank2u website safety. It was graded F (failed!). This is a big concern for Malaysian because Maybank2u is the most users online banking website in Malaysia.
Lowyat forum post

Therefore I do my own research by heading to the website ssllabs.com to do my data collection based on this list http://outdatedpenanguncle.blogspot.com/2013/01/list-of-mobile-apps-of-banks-in-malaysia.html

A = safe
Public Bank = A
https://www.ssllabs.com/ssltest/analyze.html?d=www2.pbebank.com

Citibank = A
https://www.ssllabs.com/ssltest/analyze.html?d=citibank.com.my&s=172.226.54.26

Standard Charted = A
https://www.ssllabs.com/ssltest/analyze.html?d=ibank.standardchartered.com.my%2Fnfs%2Flogin.htm

Hong Leong = A
https://www.ssllabs.com/ssltest/analyze.html?d=s.hongleongconnect.my%2Frib%2Flogin%2Flogin.do

OCBC = A
https://www.ssllabs.com/ssltest/analyze.html?d=internet.ocbc.com.my%2Finternet-banking

Alliance Bank = A (testing taking too long)
https://www.ssllabs.com/ssltest/analyze.html?d=allianceonline.com.my

HSBC = A
https://www.ssllabs.com/ssltest/analyze.html?d=www.hsbc.com.my

UOB = A
https://www.ssllabs.com/ssltest/analyze.html?d=www.uob.com.my

PayOnline (own by UOB, for paying bills) = A
https://www.ssllabs.com/ssltest/analyze.html?d=payonline.uob.com.my

Bank Islam = A
https://www.ssllabs.com/ssltest/analyze.html?d=www.bankislam.biz%2FEPOneIBWeb%2FEPOne_Login.jsp

B =less safe
Ambank = B
https://www.ssllabs.com/ssltest/analyze.html?d=ambank.amonline.com.my

Bank Rakyat = B
https://www.ssllabs.com/ssltest/analyze.html?d=www.irakyat.com.my%2Fretail%2Fsecurity%2FcommonLogin.jsp

Agro Bank = B
https://www.ssllabs.com/ssltest/analyze.html?d=www.agronet.com.my%2Frib%2Fcommon%2FLogin.do

CIMB has 2 result
CIMB = A
https://www.ssllabs.com/ssltest/analyze.html?d=cimbclicks.com.my&s=113.23.146.24&ignoreMismatch=on
CIMB = F
https://www.ssllabs.com/ssltest/analyze.html?d=cimbclicks.com.my&s=203.153.95.27&ignoreMismatch=on


F =FAILED!

Maybank = F
https://www.ssllabs.com/ssltest/analyze.html?d=maybank2u.com.my&s=172.226.52.218&ignoreMismatch=on

Affin Bank = F
https://www.ssllabs.com/ssltest/analyze.html?d=rib.affinonline.com&s=203.121.8.179&hideResults=on&ignoreMismatch=on
https://www.ssllabs.com/ssltest/analyze.html?d=rib.affinonline.com&s=58.26.229.131&hideResults=on&ignoreMismatch=on

BSN = F
https://www.ssllabs.com/ssltest/analyze.html?d=www.mybsn.com.my&s=202.187.110.20
https://www.ssllabs.com/ssltest/analyze.html?d=www.mybsn.com.my&s=1.9.17.20

Bank Muamalat = F
https://www.ssllabs.com/ssltest/analyze.html?d=i-muamalat.com.my


RHB = no result, testing taking too long
https://www.ssllabs.com/ssltest/analyze.html?d=logon.rhb.com.my


p/s: I only tested personal banking login.


Like this if you are FB user and you think this post is useful. The button is at top right of content of this post.
+1 this post if you are Google+ users and you think this post is useful.
Hope you will enjoy this post, subscribe to my RSS or mailing list or follow me on blogger or twitter. :)
source: Idea from lowyat forum

No comments:

Related Posts Plugin for WordPress, Blogger...
 
Copyright © 2015 Outdated Penang Uncle
..........