I received an Email saying that on a particular finance-related site I use, certain of my banking details had been amended. I was asked to log in, in order to see whether the changes were correct.
Because I had requested no changes, this seemed odd. Thinking that some change might have been made without my knowledge (fraud??), I logged in. On the "Account>Settings" page I'd been asked to check, there is, in fact, nothing about bank details. The bank details are on another part of the "Account" page, and there had been no changes.
I have contacted the company to ask whether they, in fact, sent the mail.
My question: is it possible for a criminal to remotely log the password/log-in details that a user keys in? Are such details secure or is this just an illusion? I am not in an internet café, not on an "open network" such as a Wi-Fi hotspot, but at home on my own computer.
Edited by: Popotla

