Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Browsers, phishing, and user interface design
Scott Granneman, 2006-06-05

Phishing works for so many reasons, we need to rethink browser and user interface design to provide some real-life security to the average user who doesn't see or understand the security cues.

Comments Mode:
Sure. Lots of ideas... 2006-06-05
Anonymous (2 replies)
Your First Statement Is Right 2006-06-06
Anonymous (1 replies)
Re: Your First Statement Is Right 2006-06-07
Anonymous (1 replies)
Re: Sure. Lots of ideas... 2006-06-24
Anonymous
Send them to AOL 2006-06-07
Anonymous
The article tells tells you atleast one simple answer 2006-06-08
Matthew
Degrade the content within self cert sites for a start...
Screw with the text (introduce spelling mistakes, or changel all the text to Times New Roman)

Screw with the layout (insert table borders).

Screw with the images (render them all as jpegs
with quality set to 10%)

Instead of pop-up with nice warning icons, use animations of a guy selling crack to school kids. (are you sure you can trust this site, it deals crack) with accompanying full volume gunshots.

Use the google 'Did you mean' test. BankOfTheVVest comes up instantly as 'BankOfTheWest'.



[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/405/33712#33712
Stop babying people 2006-06-09
Anonymous
Wrong end to start patching 2006-06-12
Thomas Nilsen (1 replies)
Re: Wrong end to start patching 2006-06-12
Anonymous
Ingredients of possible solutions 2006-06-16
S. Lo Presti
Users ignore alert messages... 2006-06-20
Anonymous
simple: 2006-06-24
ailaG







 

Privacy Statement
Copyright 2008, SecurityFocus