- Nasce rischioblog, per segnalare violazioni della sicurezza aziendale, fughe di dati, frodi, crimini aziendali.
- Come migliorare gli investimenti in sicurezza
- La sicurezza interna e la gestione di fotocopiatrici, scanner, stampanti, ecc ecc
- Minaccia Interna: creato un nuovo gruppo su LinkedIN
- Privacy e Web 2.0: la psicologia del controllo
Secure transaction authentication
Online banking frauds aim to steal money from e-Banking user accounts: a lot of Trojan horses have been developped and delivered in recent years, allowing criminal organization to get users' data and modify online transactions.
The most modern Trojan horses are able to modify the transaction been inserted by the user: such Trojans, running inside user's PC, receive the transaction data, modify beneficiary and value, and send the new data to the e-Banking server.
Once they receive an answer from the server, they show the customer a page containing the original data: the user doesn't perceive to be frauded.
How to solve this problem ?
ISYS Transaction Protection is able to protect any single transaction by means of a new authentication factor: once the user has inserted the transaction data, ISYS Transaction Protection sends him an SMS containing both the transaction data and an authentication code (like a one-time-password).
The customer is then able to verify the transaction details and, if they are different from the ones he inserted, he will not authorize the transaction, being aware is PC has been infected by malware.
