The Last HOPE
-->
         
         
Email us! Subscribe to Liquidmatrix!

From Schneier: Bank Botches Two-Factor Authentication

From Bruce Schneier’s weblog:

From their press release:

The computer was protected by two layers of security, a unique user-identifier and a multiple-character, alpha-numeric password.

Um, hello? Having a username and a password — even if they’re both secret — does not count as two factors, two layers, or two of anything. You need to have two different authentication systems: a password and a biometric, a password and a token.

(nb. I added in the italics)

This made me laugh my ass off. Thanks Bruce. You made my Friday.

Article Link

Tags: , ,

Tag It: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • ABN Amro Systems Compromised
  • Daniel Pearl’s Widow Drops Lawsuit Against Bank, al-Qaida
  • Phishing Alert: Butterfield Private Bank
  • Your October 26th Morning Caffiene Sludge
  • Bank of America Client Falsely Jailed
  • Leave a Comment