republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Chase Bank responds to Website Security Design Flaws
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
(topic move) Contacting Comcast Security »
« Spyware terminator  

SnowyOne
Premium
join:2003-04-05
Kailua, HI
·RoadRunner Cable
·Clearwire Wireless

Re: Chase Bank responds to Website Security Design Flaws

said by therube See Profile :

Chase was allowing unsecured logins, or they were allowing secured logins from a page which itself was unsecured? And by virtue of that leaves them more vulnerable to various types of attacks that may have resulted in giving up your username/password.
The login data was transmitted via SSL regardless of whether the page it was entered into was encrypted or not.
A short sighted view would be that when entering your data in a legit Chase login page, it doesn't matter that the page isn't SSL, because the data won't be transmitted until it's encrypted & that's true.
The problem with this is one of education & appearances of a website asking for sensitive data.
It should be a common practice that if a page isn't encrypted, don't trust it with your stuff.
Maybe now that Chase is coming onboard more will follow.
Forums » Up and Running » Security » Security(topic move) Contacting Comcast Security »
« Spyware terminator  


Monday, 30-Nov 11:46:50 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [20] Broadband Killed The Game Console
· [17] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [16] Midcontinent Socked With Easement Lawsuit
· [3] Monday Morning Links
· [0] Rural Carriers Quickly Embracing Fiber
Most people now reading
· Are GPS's better today? [General Questions]
· Portable power for blackouts? [Home Repair & Improvement]
· Options if ACTA is ratified [TekSavvy]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· Considering Leaving Vonage, who should I Consider? [VOIP Tech Chat]
· Evading throttling with uTP / uTorrent 1.9a [TekSavvy]
· [Newsgroups] Newzleech down? [Filesharing Software]
· filling an in-ground pool [Home Repair & Improvement]
· Do and don't for p@$$w0rd$ [Security]
· Is Easynews down? [Filesharing Software]