funsec mailing list archives

Re: The end of Phishing in sight?


From: "Douglas F. Calvert" <douglasfcalvert () gmail com>
Date: Mon, 17 Oct 2005 19:00:14 -0400

the banks aren't forced to provide anything to the customer, just must
require two-factor authentication.  I'm sure whatever method the bank
provides will have the associated hardware, any software, and any other
requirements covered by the bank most of the time.  The demand for
online banking combined with competition ensures that this will almost
certainly be the norm.


The banks must require 2-factor as long as the risk assessment
supports the increased level of control. The guidance says that single
factor is not good enough for high risk transactions. However once you
start to disect what "high risk transactions" are it gets a little
confusing...



--
--dfc
douglasfcalvert () gmail com

_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: