17 April 2014

Please Engage Brain

Archive for: June, 2011
Keith Appleyardavailable for hire - Bromley

Citi demonstrates lack of good Security practice - ditto BBC

16 June 2011  |  4966 views  |  1  |  Recommends 0

As reported, this greatly surprises me - apparently placing the Credit Card number within the URL, and thus by changing the URL exposes other Credit Card details within having to go through the Access Validation routine. On the one hand you'd assume the system designers didn't 'actually' specify it to be this way, but that the programmer didn't as...

TagsCardsSecurityGroupWhatever...
Previous 1 Next
 
1,481
Active bloggers
30,942
Members
7,540
Posts
10,072
Comments

Top bloggers: 30 days

Stuart Clark

Co-founded Impendium in 2006. Previousl...

Robert Siciliano

Security analyst, published author, tele...

Craig Ramsey

Craig Ramsey has worked in the payments ...

Jorge Yui

Jorge Yui is a digital banking expert, l...

Steve Sprague

Steve Sprague has been working in the el...

Who is commenting on these posts

Paul Love
Jorge Yui
Ketharaman Swaminathan
Neil Burton
Mark Pavan
Fiona Hamilton
Retired Member