QUOTE(wodenus @ Oct 11 2008, 12:16 PM)
Did you lose your mobile phone, or leave your mobil phone somewhere on that date? h/p security is fallible, because someone can change the number if they have the name and password. It might also be possible to intercept phone data and decrypt it (might take a while though, unless SMS is sent in the clear

)
I do think intercept phone data and decrypt it has low chance being TS case, as even the they have the ability, they won't doing on TS with 2K plus only.
Several key area we should focus on.
1. TS lose IC, HP and ATM card
2. With HP, TAC can be obtained by the 'hacker' because TAC send directly to the HP from the E-banking, so this create possibility to create a transaction.
3. TAC can also being generated through ATM machine, but if the 'hacker' knew the ATM pin to generate TAC, it is better to withdraw cash directly, don't need to create an online transaction already. So 'hacker' doesn't know the ATM pin (or TS has already cancelled the ATM)
4. So with no ATM pin, only E-transfer can be done to withdraw the money.
5. So if hacker got online user name and password, they can do the transfer already because HP is in their hand.
6. So main question and key area is how they obtain those username and password. TS write in the HP or on the stolen stuff?