Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Browsers, phishing, and user interface design
Scott Granneman, 2006-06-05

Phishing works for so many reasons, we need to rethink browser and user interface design to provide some real-life security to the average user who doesn't see or understand the security cues.

Comments Mode:
Sure. Lots of ideas... 2006-06-05
Anonymous (2 replies)
Your First Statement Is Right 2006-06-06
Anonymous (1 replies)
No active e-mail. Period. Text, just like back in the days of Fidonet and in the original intent of Usenet.

If there's something fancier that needs to be done, throw it into a word processing document or some other appropriate format and attach it.

You suggested perhaps allowing image retrieval, but we've seen that corrupted images can be a vector. Even with a warning that the articles reflects will do no good at all.

No active e-mail, period. End of solution.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/405/33695#33695
Re: Your First Statement Is Right 2006-06-07
Anonymous (1 replies)
Re: Sure. Lots of ideas... 2006-06-24
Anonymous
Send them to AOL 2006-06-07
Anonymous
Stop babying people 2006-06-09
Anonymous
Wrong end to start patching 2006-06-12
Thomas Nilsen (1 replies)
Re: Wrong end to start patching 2006-06-12
Anonymous
Ingredients of possible solutions 2006-06-16
S. Lo Presti
Users ignore alert messages... 2006-06-20
Anonymous
simple: 2006-06-24
ailaG







 

Privacy Statement
Copyright 2007, SecurityFocus