Personal tools
You are here: Home wikidblog Banks need strong authentication desparately
« January 2009 »
Mo Tu We Th Fr Sa Su
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31  
 

Banks need strong authentication desparately

Forrester Research is urging banks to adopt additional security to fight phishing and other forms of fraud, including strong authentication.

"Two-fifths of the European internet users who don't use online banking say they are holding back because they worry about security, according to a survey of nearly 23,000 Europeans by Forrester Research." - from the article on silicon.com The research also indicates that some people have stopped doing online banking because of security concerns.

"Banks should look to educate net users about security precautions, not let usability fears compromise security, deploy or strengthen two-factor authentication urgently, and collaborate rather than compete on security," according to Forrester.

Looks like the report was finished before Bruce Schneier's , which I have already discussed more than once already ;) previously. To sum, he misses on a couple of poinsts: 1. You can strongly authenticate the transaction as well as the session to avoid sessions hijacking and 2. There are other forms of strong authentication besides brain-dead hardware tokens that can fight DNS Cache poisoning and other man-in-the-middle attacks. We'll see if Forrester picks a fight!

You can also find the article on Out-Law.com

The URL to Trackback this entry is:
http://www.wikidsystems.net/WiKIDBlog/20/tbping
Add comment

You can add a comment by filling out the form below. Plain text formatting. Comments and Trackbacks are moderated.

(Required)
(Required)
(Required)
(Required)
This helps us prevent automated spamming.