European US Online Banking Security Measures May Be Insufficient



May 8, 2005 -- U.S. banks have turned to their European counterparts for on-line banking security tips, but the tokens and other two-factor authentication techniques used in Europe might not be enough. Hackers are becoming increasingly capable of compromising data with sophisticated attacks directly against Web applications - a problem which auditing tools like nSense WebScan and SystemScan, available from Antamis Sprl, can help financial institutions solve.

Passwords alone are not suitable for protecting confidential data. Two-factor authentication is an improvement, but isn't a complete solution to on-line security. Tokens and similar two-factor techniques protect against passive attacks such as password guessing. However, they do not work against methods like phishing that hackers now use. Likewise, if a hacker opens a bank account with on-line access, he or she could get into the system using the token and attack the bank from inside, if vulnerabilities exist in the banking application.

Banks in the U.S. and Europe need to review their entire security policy to ensure that risks are addressed at the source, instead of handling only the most apparent and exploited issues. Data thieves will grab the low-hanging fruit first, but the golden apples on the highest branch are not out of reach for creative and sophisticated hackers. To mitigate the risk of data and identity theft and fraud, banks should proactively create awareness regarding security issues, control access to banking applications, and regularly audit their Web-facing IT systems.

"Banks are spending millions of euros on two-factor authentication, while hackers are busy finding other ways of accessing client data and committing on-line fraud. Using tokens will certainly improve security, but if a bank has a hacker as a client, he or she could possibly compromise the system from within," states Ben Kwiecinski, Managing Director of Antamis.

Controlling user access and creating awareness of the dangers of the Internet among clients are important for information security. To ensure the complete safety of client data, however, banks should regularly audit their internet-accessible infrastructure for security vulnerabilities. Using automated auditing tools like nSense WebScan and SystemScan, bank IT and security personnel can accomplish this quickly and effectively.

About Antamis
Antamis is a leading provider of cost effective open source-based CRM, CMS, and e-Learning business solutions, as well as security services that help its clients get the most of the Web - profitably and safely. Antamis sees business and security objectives as interrelated and delivers robust solutions that address these needs with high technical competence, commercial excellence, and outstanding customer service.

For more information, please contact Ben Kwiecinski or Magnus Paulin on +32 (0)2- 211 3439 or visit www.antamis.com. Antamis Sprl is located at Rue Des Palais 44, B-1030 Brussels.





European US Online Banking Security Measures May Be Insufficient





Architecture | Art And Entertainment | Books | Country Music | Magazines | Movies | Museums | Music | News And Talk Shows | Performing Arts | Television | Web sites - Internet | Automotive | Aftermarket | Classic Autos | Consumer Publications | Motorcycle and Bike | Racing | Recreational Vehicle | Repair And Service | Trade Publications | Business | Advertising And Marketing | Business Books | e-Commerce | Finance | Franchise | Human Resources | Business Insurance | Investment | Markets | Network Marketing | Public Relations | Publications | Real Estate | Retail | Stocks | Supermarkets | Chemical | Computer | Databases | Games And Entertainment | Instruction | Linux Or GNU | Operating Systems | Programming | Security | Software | Utilities | Consumer | Gifts and Collectibles | Hobbies | Web sites Or Internet | Economy | Education | College Or University | Home Schooling | K-12 | Post Graduate | Technical | Employment And Careers | Environment | Events And Trade Shows | Gaming And Casinos | Government | Government Education | Law Enforcement | Legislative | Local | National | Public Services | State | Transportation | Home and Family | Banking And Personal Finance | Home Furnishings And Interiors | Parenting | Wedding And Bridal | Industry Specific | Aerospace And Defense | Agriculture | Apparel And Textiles | Broadcast | Construction And Building | Electrical | Firearms | Funeral | Food | Healthcare | Leisure And Hospitality | Logistics And Shipping | Manufacturing And Production | Mining And Metals | Oil And Energy | Paper And Forest Products | Plumbing Heating And AC | Print Media | Publishing | Radio | Restaurant Industry | Tobacco | Toy | Insurance | Legal And Law | Lifestyle | Beauty | Fashion | Food And Beverage | Health And Fitness | Hotel And Resorts | Pastimes | Restaurants | Retirement | Travel And Tourism | Machinery | Maritime | Medical | Alternative Medicine | Asthma | Cancer | Cardiology | Chiropractic | Dental | Dermatology | Diabetes | Emergency | Family Medicine | General | Geriatrics | Hospitals | Infectious Diseases | Internal Medicine | Managed Care And HMO | Medical Products | Mental Health | Neurology | Nursing | Nutrition | OB Or GYN | Pediatrics | Pharmaceuticals | Physical Therapy | Radiology And Imaging | Research | Surgery | Vision | Miscellaneous | Non-profit | Opinion and Editorial | Politics | Public Utilities | Religion | Christian | Islam | Jewish | Other | Science and Research | Society | African American Interests | Asian Interests | Childrens Issues | Gay and Lesbian | Hispanic | Mens Interests | Native American | Senior Citizens | Social Services | Teen Issues or Interests | Womens Interest | Sports | Baseball | Basketball | Bicycling | Boating and Maritime | Bowling | Boxing | Fishing | Football | Golf | Hockey | Hunting | Martial Arts | Outdoors | Rugby | Soccer | Water | Winter and Snow | Technology | Biotechnology | Tech Computer | Electronics | Enterprise Software | Games | Graphics Printing CAD | Hardware and Peripherals | Industrial | Tech Internet | Multimedia | Networking | Public Sector - Government | Robotics | Semiconductor | Tech Software | Telecommunications | Telecom | Trade | Transportation | Volunteer | Nanotechnology