Friday, April 13, 2007

Boarding Pass Hacker Targets BofA SiteKey

Via Slashdot.org -

"The fake boarding pass guy is at it again. His blog shows a demonstration phishing website that is able to bypass the SiteKey authentication system used by Bank of America, Fidelity, and Yahoo. Users will be shown their security image, even though they're not visiting the authentic websites."

This hack compounds the study showing that users don't pay attention to the SiteKey pictures anyway.

No comments:

Post a Comment