Cracking Physical Identity Theft

Tuesday, July 1st, 2008

A researcher performing social engineering exploits on behalf of several U.S. banks and other firms in the past year has “stolen” thousands of identities with a 100 percent success rate.Joshua Perrymon, hacking director for PacketFocus Security Solutions and CEO of RedFlag Security, says organizations typically are focused on online identity ...

A Guide to Protecting Your Identity Online

Saturday, June 14th, 2008

With identity theft on the rise and personal information at a premium, it's never been more important to be cautious about what you reveal online. Social-networking sites such as Facebook have largely usurped chatrooms and forums -- at least in the grown-up world -- as fun places to hang around online ...

Opera Bolsters Web Browser With New Malware Protection

Friday, June 6th, 2008

Opera has beefed up security in its upcoming Web browser as it looks to challenge Firefox and Internet Explorer in the area of Web security. Putting a bulls-eye on Web-based threats, the Opera has formed a partnership with Haute Secure, a Seattle-based security vendor founded in 2006, to protect users from ...

Beware of Error Messages At Bank Sites

Monday, June 2nd, 2008

If you own or work at a small to mid-sized business, and are presented with an error message about data synchronization or site maintenance when trying to access your company's bank account online, you might want to give the bank a call: A criminal group that specializes in deploying malicious ...

Beauty contest winner becomes latest victim of online fraudsters

Monday, June 2nd, 2008

IT security and control firm Sophos is reminding computer users about the risks of identity theft and online fraud following news that Jade Saunders, the current beauty contest winner in the British seaside town of Scarborough, has fallen foul of an email phishing scam. The twenty year old student, who was ...

Phishers Target New Victims on LinkedIn

Sunday, June 1st, 2008

Users of the professional-oriented social networking site LinkedIn are being warned that scam artists are using the site to nab lucrative bank account information from naive victims, say security experts. Advanced fee fraud -- also known as "419 scams" after the relevant section of the Nigerian penal code -- have become ...

Symantec Launches Online Fraud Protection

Monday, May 19th, 2008

Symantec Corp. today announced the availability of Symantec Online Fraud Protection, a comprehensive program that includes Symantec services, education and ongoing monitoring and management capabilities designed to protect businesses that conduct large volumes of financial transactions and their customers from losses due to online fraud. This offering helps businesses shield their ...

PayPal XSS vulnerability affects EV SSL

Friday, May 16th, 2008

A new attack on PayPal could have allowed users who thought they were on a trusted page to access a fraudulent page and possibly expose personal information. On Friday, Finnish researcher Harry Sintonen reported the vulnerability on an IRC chat room. In an interview with Netcraft, Sintonen said the issue was ...

DIY Identity-Theft Protection: A 12-Step Program

Thursday, May 15th, 2008

You don't have to spend $100 to $200 a year to defend yourself from identity theft at the level of protection that a paid service offers. You can do almost everything the services do, for free. But following these steps will require time and effort. Get a free copy of your ...

Two Factor Authentication is Dead

Thursday, May 1st, 2008

The fundamental problem with two factor (2FA) session authentication is that the approach is vulnerable to Man in the Middle and Man in the Browser attacks. 2FA requires that customers present not only a password (something they know) when they log into online banking, but also demonstrate that they possess ...