Skip to main content
  1. Home
  2. Computing
  3. News

Brits panic to file taxes as major banking website goes down

Add as a preferred source on Google

Millions of U.K. residents who were scrambling to wrap up their taxes today hit a roadblock: their bank’s website went down for over three hours.

HSBC claimed the outage was the result of a Distributed Denial of Service (DDoS) attack, and then claimed to have “successfully defended our systems” after hours of outages. The purpose of a DDoS attack being to cause outages, some customers were a touch skeptical about the word “successfully.”

Recommended Videos

@HSBC_UK So the inability to log in at all for the last 4hrs is you "successfully" defending a DDoS? Nice one.

— det (@detobate) January 29, 2016

A Distributed Denial of Service attack is, in its essence, a massive amount of traffic sent the way of a particular website or server, with the intention of crashing it. These attacks cannot, and are not intended to, reveal the personal information of users: all they can do is take a site offline.

DDoS attacks are typically carried out by botnets, massive armies of computers infected by malware. Would-be attackers who control a botnet can send an instant surge of traffic toward their targets in the hopes of causing an outage.

And today the bank was already dealing with above-average traffic: the end of January is when freelance workers in the U.K. need to file their self assessment taxes. This means around 10 million self-employed people were rummaging through their finances. For many it’s also the first payday of 2016, another reason people might be logging into their bank’s website or app.

Days like this, when a given website is already dealing with above-average traffic, give would-be DDoS attackers primed targets.

HSBC said on Twitter that it is “working closely with law enforcement authorities to pursue the criminals responsible for today’s attack on our Internet banking,” before encouraging customers still experiencing problems to visit a local branch to complete transactions in person.

The company also promised to waive any fees caused by the outage, which should be at least a little comfort to customers who face a late night of number-crunching.

Justin Pot
Justin's always had a passion for trying out new software, asking questions, and explaining things – tech journalism is the…
Meta confirms its AI hacked another company’s system, and the pattern is anything but Irregular
AI security firm Irregular keeps living up to its name as another AI testing mishap comes to light.
Body Part, Finger, Hand

Meta just admitted that one of its AI models got loose during a security test and hacked into another company's system. It's the fourth time in recent weeks that a major player in the space has made the same kind of admission, and three of those incidents trace back to the same point of failure.

One testing lab, three separate slip-ups

Read more
Scam Uber emails are targeting users with fake payment alerts
Your Uber payment method probably didn't expire. Here's how to spot the scam before it costs you.
uber-hotel-bookings

Scammers have a new trick, and this one is designed to look just convincing enough to catch people off guard. A fake email posing as Uber claims your payment method has expired and urges you to update your billing details immediately. On the surface, it resembles a routine account notification. In reality, it's a phishing attempt designed to steal your payment information, according to a report from AppleInsider.

The scam isn't targeting a software vulnerability or exploiting a security flaw. Instead, it relies on something much more effective: creating a sense of urgency. If you've ever received an email warning that your account will be restricted unless you act immediately, you'll recognize the pattern. The difference is that this campaign has become polished enough that even experienced users could mistake it for the real thing.

Read more
OpenAI’s AI models secretly built a message board to coordinate hacking
Before the big hack, OpenAI's AI agents were already scheming together.
OpenAI logo on Microsoft surface

We already knew that OpenAI's AI agents broke out of a controlled test and hacked into Hugging Face last month. Now, we know it wasn't a solo act.

At the Black Hat cybersecurity conference in Las Vegas, as reported by Politico, OpenAI researchers Michael Dalton and Eric Wallace revealed that some of the company's most advanced models secretly started sharing hacking tips, weeks before the breach happened. Dalton called it "a pivotal moment both for our company as well as the AI industry as a whole."

Read more