funsec mailing list archives

RE: Nordea Sweden shuts Internet banking due to targetedphishing


From: "Larry Seltzer" <larry () larryseltzer com>
Date: Wed, 5 Oct 2005 09:17:38 -0400

That WON'T WORK because it relies on TRAINING USERS, which CANNOT BE DONE.


I agree with you completely on this point, but doesn't your two-factor
authentication idea suffer from the same problem to some extent? It only
works if the user notices that the phishing site doesn't ask for the code.

Larry Seltzer
eWEEK.com Security Center Editor
http://security.eweek.com/
http://blog.ziffdavis.com/seltzer
Contributing Editor, PC Magazine
larryseltzer () ziffdavis com 


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: