Security information

We have put together everything you need to know about online security in managing your finances!

Security information

Phishing attempts – Parcel delivery services

A new fraud trend is currently underway, this time targeting unsuspecting sellers who appear as sellers on the internet (on classifieds sites, social media, etc.). Fraudsters pose as buyers who want to have their parcel delivered by a parcel delivery service. They claim to do so by sending a fake link in disguise, typically using a messaging app (chat program).

Opening the link, the seller is taken to a fake website similar to the original parcel delivery service site, where they see a button labelled “customer details”, “Accept payment”, “Receive payment instrument” or “Get money”, which they click to see a list of banks, from which they can select their own bank and be taken to a fraudulent site that looks deceptively similar to the bank’s internet banking login page. As soon as the username, password and the SMS code have been entered on this fake website, the fraudsters obtain the data they need to initiate unauthorised banking transactions (eBank registration, NetBank transactions).

It is important that if you receive such a link as an advertiser, do not click on it!
Protect your valuables, and never give anyone any NetBank or App login details or codes received via SMS/iSMS!

Always check the text confirmed by the Bank in the SMS/iSMS (activity, e.g. transfer, registration of new device, amount, target account number) and never approve the transaction before you have verified the correctness of the confirmation.

If you suspect that you have been a victim of fraud, call GRÁNIT Bank’s Telebank immediately on +36 1 510 0993.

GRÁNIT Bank’s advice on how to use NetBank, eBank and bank cards safely

Despite the spectacular improvement in information security, the methods of criminals are also evolving rapidly. There are many ways to misuse sensitive data, which can be effectively prevented by observing a few simple rules.

It is important for GRÁNIT Bank that its customers can be sure that their data is safe, but to reduce the risk of misuse, we need your help and active participation as well.

On 17.02.2022, the National Bank of Hungary (MNB) also issued a call for action to jointly protect against the increasing phishing and fraudulent attacks

The call highlights that, compared to the average monthly customer reports last year, the number of consumer reports of bank phishing attempts and misuse based on deception of customers submitted to the MNB’s customer services desk doubled in the first 2 months of 2022. Customers of at least 7 Hungarian credit institutions were targeted by these criminals.

Click here for more details.

Please be informed that GRÁNIT Bank Zrt. will never contact its customers for the purpose of asking them to provide their passwords or identification data via e-mail or telephone.

To protect your data, please use the following useful tips in your daily life!

Password management

  • Do not write down your password where it can be accessed by others;
  • Do not save your password in your browser;
  • Do not share your password with anyone else;
  • If you have a default password for a service or device, change it as soon as possible;
  • Change your password at regular intervals (it is advisable to change your password at least every three months);
  • Do not use easy-to-guess passwords (Example: batman, 123456a);
  • Make sure your password cannot be linked to you. Do not include a year of birth, a family member’s name, etc.;
  • Aim for length and variety – make your password at least 12 characters long and include numbers, upper- and lower-case letters and, if possible and feasible, apply special characters as well. The use of slogans is recommended;
  • When you enter your password, make sure that it cannot be read from the keyboard by unauthorised persons.

Computer security (Laptop, Notebook, PC, etc.)

  • Do not download or install apps or documents originating from unknown sources;
  • Always check the official factory websites for updates released;
  • Always install the latest system updates. As most apps already have an automatic update option, you should activate it, if possible;
  • Use legitimate software;
  • Use up-to-date antivirus and firewall software;
  • Do not connect unknown devices (e.g. found Pendrive, SD cards) to your device.

Mobile security (Tablet devices, Smartphones)

  • Do not download apps or documents originating from unknown sources to your device;
  • Always download and install apps through the official app store;
  • Follow the permission request of the apps you want to install and only accept what is necessary for the app to work properly (e.g. a flashlight app does not need access to SMS messages);
  • Always check the official factory websites for updates released;
  • Always install the latest system updates;
  • Use an antivirus app on your mobile device;
  • Using a device with rooted/modified software is not recommended and poses an increased risk to your personal data.

Wi-Fi usage

  • Avoid connecting your devices to Wi-Fi networks that are public, unknown or not password-secured;
  • Wi-Fi enabled devices should be set to at least WPA2 encryption.

Useful information related to websites

  • If you are logged in to a website (e.g. Netbank), log out using the logout option first before closing the currently used website;
  • Always pay attention to the browsers’ warnings about the website you are visiting;
  • Use a website filtering program, and possibly install ad-blockers in your browser;
  • Check the accuracy of the address of the website you are visiting (a common method used by criminals is to redirect the unsuspecting user to a site with a similar title and/or content to the original one, and there trick them into providing data);
  • Check the validity of the website certificate as well as its issuer (trusted, known certificate issuer). 

Anti-phishing tips

The most common methods of phishing include contacting by telephone solicitation or by electronic mail. There are several ways to defend against these, but unfortunately criminals are becoming more sophisticated, and so the protection against them requires more and more attention.

  • When receiving an e-mail or a phone call, make sure that the person or company sending it is legitimate and that the request is authentic. There may be references to a non-existent company or impersonation. If the company is not known, you should not respond. In the other case, you should request confirmation of the legitimacy of the request through a separate channel, using one of the contact details listed on the official website of the company referred to;
  • Do not click on a link provided in a suspicious letter;
  • Never give passwords, other personal identifiers or banking information to another person or to other persons, either by phone or e-mail;
  • If the received e-mail contains nothing else but links, and the sender is unknown, delete it;
  • In the case of a telephone call, pay close attention to what information the caller might want (never provide any banking and other critical identifiers);
  • It is worth monitoring the news about phishing in the press;
  • Do not respond to unidentifiable invitations. If it is from the name of a friend, ask your friend to confirm it.

Advice related to bank cards and ATMs

  • For your security, please use the bank card Lock and Set Limit functions in the GRÁNIT Bank eBank app! The bank card Lock function allows you to lock your bank card and activate it only before the actual payment, thus eliminating the possibility of bank card fraud. You can also prevent fraud by keeping your bank card limit at HUF 0, and increasing it to the desired amount only before a cash withdrawal or making a purchase with your bank card. It is, however, important to know that you need an internet connection to use these features.
  • Be aware of your surroundings before withdrawing money from an ATM;
  • Like passwords, the PIN code related to a bank card should not be written down anywhere or disclosed to anyone else;
  • Always keep your bank card details confidential;
  • It is recommended that you withdraw money from an ATM in a closed area (e.g. bank branches, malls);
  • Always keep your bank card in sight when making purchases;
  • When shopping online, make sure that the shop is legitimate. Check if the GTC and other information stipulated by law are available for reading. Check whether the transaction page has a valid certificate signed by a trusted (known) certifier and issued for that page (its connection is encrypted “https”).

Other useful tips

  • Wherever possible, use multi-factor identification to provide extra protection for your data;
  • As far as possible, only use trusted and proprietary devices for financial transactions;
  • In general, avoid using the Internet with an administrator user ID. It is advisable to create a user account with limited rights – even a separate one for this purpose – and use it for Internet browsing.

Please contact the Bank’s Customer Service Desk immediately if you notice a suspicious case or if you feel that you have been a victim of abuse!

CALL CENTRE
0- 24 hours banking service by phone

Phone no.: +36 1 510 0993; +36 70 960 9871
Opening hours, Budapest time:
Full service:
Monday-Friday:
8:00 – 21:00
Emergency services*:
Monday-Friday:
21:00 – 8:00
Saturday, Sunday and public holidays:
0:00 – 24:00

Suspicious cases or abuse may include, without limitation:

  • If you receive an e-mail/call informing you to provide your details for the Bank’s services by clicking on a link sent by e-mail or by calling a telephone number;
  • You notice an anomaly in relation to the Bank’s services;
  • If the caller/sender requests money from you and asks you to transfer it to a specific account. In a high percentage of cases, fraudsters may impersonate a close relative or family member and claim to be in an emergency situation;
  • You notice unidentifiable transactions in your bank account;
  • Receive a marketing enquiry by telephone or e-mail, even though you have not asked for it (e.g.: participation in a prize draw organised by the Bank).

Other useful reading material and websites:

The website of the National Bank of Hungary, and links to its information notices and recommendations:

https://www.mnb.hu/
https://www.mnb.hu/fogyasztovedelem/digitalis-biztonsag
https://www.mnb.hu/fogyasztovedelem/bankszamlak/elektronikus-banki-szolgaltatasok/e-banking-biztonsag
https://www.mnb.hu/fogyasztovedelem/bankszamlak/elektronikus-banki-szolgaltatasok/intezmenyi-biztonsag
https://www.mnb.hu/felugyelet/szabalyozas/felugyeleti-szabalyozo-eszkozok/ajanlasok

Government Computer Emergency Response Team (GovCERT-Hungary) website:
https://www.cert-hungary.hu/

Link to the monthly newsletter published by the SANS Institute, which is translated into several languages, including Hungarian:
https://www.sans.org/security-awareness-training/ouch-newsletter

Link to the book entitled “IT security in plain language”, published by the John von Neumann Computer Society:
https://njszt.hu/de/it-biztonsag-kozerthetoen

The Hungarian Police’s web page related to Internet Safety:
http://www.police.hu/hu/hirek-es-informaciok/bunmegelozes/internet-biztonsag

European Banking Authority (EBA), official Romanian web page
www.eba.europa.eu/romana


Contact us:

E-mail: info@granitbank.hu
Call centre: +36-1-510-0993