<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: ABN Amro Systems Compromised</title>
	<atom:link href="http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/</link>
	<description>Bringing Fire To The Village: Your Source For Computer, Network &#38; Information Security News from Dave Lewis, Security Blogger</description>
	<pubDate>Wed, 07 Jan 2009 02:39:43 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Dave Lewis</title>
		<link>http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/comment-page-1/#comment-34357</link>
		<dc:creator>Dave Lewis</dc:creator>
		<pubDate>Tue, 24 Apr 2007 12:18:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/#comment-34357</guid>
		<description>@ Igor

Thanks, I was unaware of that rollout.

@All

You know, I could gripe all day about internet banking but, I think a better approach would be...what works? I have worked for a couple banks in the past and I know the challenges and stress that these guys face. I wonder...what is a good solution? It's far too easy to cast aspersions on the security that various banks have in place (I should know, I'm perfectly guilty of that). 

Anyone have any thoughts they would like to share that would be a positive improvment?

Thanks for your comments Igor. I appreciate it.

cheers</description>
		<content:encoded><![CDATA[<p>@ Igor</p>
<p>Thanks, I was unaware of that rollout.</p>
<p>@All</p>
<p>You know, I could gripe all day about internet banking but, I think a better approach would be&#8230;what works? I have worked for a couple banks in the past and I know the challenges and stress that these guys face. I wonder&#8230;what is a good solution? It&#8217;s far too easy to cast aspersions on the security that various banks have in place (I should know, I&#8217;m perfectly guilty of that). </p>
<p>Anyone have any thoughts they would like to share that would be a positive improvment?</p>
<p>Thanks for your comments Igor. I appreciate it.</p>
<p>cheers</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Igor Drokov</title>
		<link>http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/comment-page-1/#comment-34330</link>
		<dc:creator>Igor Drokov</dc:creator>
		<pubDate>Tue, 24 Apr 2007 10:03:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/#comment-34330</guid>
		<description>Sorry, the article link got mangled by the .</description>
		<content:encoded><![CDATA[<p>Sorry, the article link got mangled by the .</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Igor Drokov</title>
		<link>http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/comment-page-1/#comment-34329</link>
		<dc:creator>Igor Drokov</dc:creator>
		<pubDate>Tue, 24 Apr 2007 09:58:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.liquidmatrix.org/blog/2007/04/23/abn-amro-systems-compromised/#comment-34329</guid>
		<description>"Hopefully with all of that money sloshing around someone can float the poor buggers in IT Security a few bones to repair the security problems."

Interestingly enough, the authentication method compromised at ABN AMRO was disconnected smartcard readers, guess what Barclays is rolling out to their UK customers this year? - yes, correct... disconnected smartcard readers...

Deploying readers to all their customers (in the UK) is definitely not cheap and shows that budget alone isn't always an issue....

We have blogged on the incident earlier this month:
http://blog.cronto.com/index.php?
title=transaction_verification_can_protect_aga</description>
		<content:encoded><![CDATA[<p>&#8220;Hopefully with all of that money sloshing around someone can float the poor buggers in IT Security a few bones to repair the security problems.&#8221;</p>
<p>Interestingly enough, the authentication method compromised at ABN AMRO was disconnected smartcard readers, guess what Barclays is rolling out to their UK customers this year? - yes, correct&#8230; disconnected smartcard readers&#8230;</p>
<p>Deploying readers to all their customers (in the UK) is definitely not cheap and shows that budget alone isn&#8217;t always an issue&#8230;.</p>
<p>We have blogged on the incident earlier this month:<br />
<a href="http://blog.cronto.com/index.php?" rel="nofollow">http://blog.cronto.com/index.php?</a><br />
title=transaction_verification_can_protect_aga</p>
]]></content:encoded>
	</item>
</channel>
</rss>
