18 October 2017

Please Engage Brain

Archive for: June, 2011
Keith Appleyardavailable for hire - Bromley

Citi demonstrates lack of good Security practice - ditto BBC

16 June 2011  |  5901 views  |  1 comments | recommendations Recommends 0

As reported, this greatly surprises me - apparently placing the Credit Card number within the URL, and thus by changing the URL exposes other Credit Card details within having to go through the Access Validation routine. On the one hand you'd assume the system designers didn't 'actually' specify it to be this way, but that the programmer didn't ask...

TagsCardsSecurityGroupWhatever...
Previous 1 Next
members
29,944
Members
comments
17,821
Comments
blogs
11,669
Posts
bloggers 
1,106
Active bloggers

Top bloggers: 30 days

Most viewed Engaging
Bob Lyddon
Bob Lyddon

Consultant in payments, electronic banki...

Kunal Patel
Kunal Patel

Kunal currently works as a business advi...

Carlo R.W. De Meijer
Carlo R.W. De Meije...

Independent financial services advisor

Breana Patel
Breana Patel

Founder of a management consulting firm...

Who is commenting on these posts

Eran Eshel
David Abbott
Shaju Nair
Ketharaman Swaminathan
James Piggot
João Bohner
Julian Wallis
Alexander De Lange
David Poole
John Bertrand
Deepthi Rajan
Robert Smith