Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




webappsec logo WebApp Sec mailing list archives

Re: Article - A solution to phishing
From: Saqib.N.Ali () seagate com
Date: Sun, 28 Nov 2004 08:07:17 -0800

My online bank uses a system of picking random numbers from
my password, and asking me to match those numbers with a
drop down box, instead of just typing in the exact password
in the same format at each login.

This "might" prevent against brute force attacks. However if somebody 
already has your password, this login process won't deter him/her from 
accessing your banc account. An easier way to prevent against brute-force 
attacks is to use CAPTCHA ( http://en.wikipedia.org/wiki/Captcha ).

-- 
In Peace,
Saqib Ali
http://tools.tldp.org/search.php <--- Search for Linux HOWTOs


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]