Join the Community

23,306
Expert opinions
42,504
Total members
371
New members (last 30 days)
193
New opinions (last 30 days)
29,084
Total comments

Latest expert opinions

clear
clear

294 Results from 2010, /security

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Forget Privacy, Think Security

Everywhere you go there is a privacy advocate screaming to protect your privacy. Privacy advocates, bless them, are a dying breed. They fight for whatever privacy rights there are left and do their best to remain watchdogs. If your gig is privacy, my guess is you have lost all your hair and are popping Prozac to relieve the stress of todays anti-p...

/security /regulation

Michael Wright

Michael Wright ex-CEO, NED at Tilte, Taxd, Welleasy

I've been Phished, Again !

With half of the Internet users in the UK now banking online (UK Payments Administration, Jan 2010), it’s hardly surprising that phishing is on the rise. As new customers migrate to more convenient banking processes, the number of potential targets for phishers grows each week. I’m a victim of phishing attacks each week, but as part of an antip...

/security

Steve Dance

Steve Dance Managing Partner at RiskCentric

A journey around a risk governance systems implementation

I recently met with a former colleague of mine who recounted a story that as first seems extreme, but which I have subsequently established to be a common problem: My contact was a risk manager in a large financial institution and he was recounting to me his experiences in implementing a risk and compliance governance system. The system had entai...

/security /regulation

Steven Murdoch

Steven Murdoch Royal Society University Research Fellow at University College London

Encoding integers in the EMV protocol

On the 1st of January 2010, many German bank customers found that their banking smart cards had stopped working. Details of why are still unclear, but indications are that the cards believed that the date was 2016, rather than 2010, and so refused to process a transaction supposedly after their expiry dates. This problem could turn out to be quite...

/security Information Security

Lachlan Gunn

Lachlan Gunn Executive Director at European Association for Secure Transactions

EMV Smart Card security - what's the way forward?

My post on 'should we have chip only payment cards?' gave rise to some discussion and debate, and many thanks to all those concerned for their views and comments. The related website poll conducted by the European ATM Security Team (EAST) indicated that 60% of respondents felt that European EMV cards should not hold sensitive cardholder data as ...

/security

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Why Am I Logged Into Someone's FriendFeed?

I have pretty tight controls over my network and access to my 510 usernames and passworded accounts. Yes he just said “510”…and counting. I have full administrative rights over every PC and nobody else has access to my home or office. So it came as a surprise to me when I went to log into my FriendFeed account to make an adjustment and I discovere...

/security /regulation

Uri Rivner

Uri Rivner CEO and Co-Founder at Refine Intelligence

Good Times in Fraudland: Part II

In my first of three entries summarizing 2009 online fraud trends, I suggested that there had never been a better time to be a cybercriminal, and talked about the high grade Trojans currently available to fraudsters. But to use a modern warfare analogy, even if you have nuclear weapons they aren’t really effective without a robust ballistic missil...

/security Innovation in Financial Services

Robert Siciliano

Robert Siciliano Security Analyst at Safr.me

Data Breaches: The Insanity Continues

The Identity Theft Resource Center Breach Report also monitors how breaches occur. This task is made more difficult by the scarcity of information provided (publicly) for approximately 1/3 of the recorded breaches. For the remainder, those events that do state how the breach occurred, malicious attacks (Hacking + Insider Theft) have taken t...

/security /regulation

Retired Member

Retired Member 

Another GSM Algorithm Cracked

The A5/1 encryption cypher fell last week and now the A5/3 has been cracked. Not a good week for mobile phone carriers and alarm bells should be ringing if you are planning involving the GSM association in any secure applications and perhaps you need to revisit the risk equation. For those in the know a new type of attack was used to construct a si...

/security /regulation Whatever...

Retired Member

Retired Member 

Is fraud in the UK getting better or worse?

Is fraud in the UK getting better or worse? As we enter 2010, the picture of fraud across the UK is somewhat mixed. On one hand we have figures from The UK Cards Association showing card fraud decreasing 23 per cent to £232.8m in the first half of 2009. The reduction in fraud is largely due to the reduction in Card-Not-Present (CNP) fraud (fraud o...

/security /regulation Online Banking

Now Hiring