<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>PistolStar's Authentication Blog</title>
	<atom:link href="http://blog.pistolstar.us/blog/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://blog.pistolstar.us/blog</link>
	<description>Usability. Security. Auditing. Compliance.</description>
	<pubDate>Fri, 03 Sep 2010 14:20:37 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
	<language>en</language>
			<item>
		<title>The Financial Industry - Courts Try to Prove Reasonable Security</title>
		<link>http://blog.pistolstar.us/blog/?p=333</link>
		<comments>http://blog.pistolstar.us/blog/?p=333#comments</comments>
		<pubDate>Fri, 03 Sep 2010 14:20:37 +0000</pubDate>
		<dc:creator>Chief Content Writer</dc:creator>
		
		<category><![CDATA[Authentication Security]]></category>

		<category><![CDATA[Data Security]]></category>

		<category><![CDATA[General Information]]></category>

		<category><![CDATA[IT Security]]></category>

		<category><![CDATA[Security Attacks]]></category>

		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[access]]></category>

		<category><![CDATA[attack]]></category>

		<category><![CDATA[authentication]]></category>

		<category><![CDATA[banking security]]></category>

		<category><![CDATA[Comerica]]></category>

		<category><![CDATA[Experi-Metal Inc.]]></category>

		<category><![CDATA[financial security]]></category>

		<category><![CDATA[liability]]></category>

		<category><![CDATA[phishing]]></category>

		<category><![CDATA[phishing email attack]]></category>

		<category><![CDATA[reasonable security]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=333</guid>
		<description><![CDATA[ 

$1,901,269 is how much attackers were able to wire out of Experi-Metal’s Comerica bank account in the span of three hours. This was a phishing attack that cause damage to Experi-Metal Inc. (EMI)’s financial assets and raised the questions of liability and “What is reasonable security?”
The continuing court case is attempting to answer that [...]]]></description>
			<content:encoded><![CDATA[<p><!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:TrackMoves /> <w:TrackFormatting /> <w:PunctuationKerning /> <w:ValidateAgainstSchemas /> <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid> <w:IgnoreMixedContent>false</w:IgnoreMixedContent> <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText> <w:DoNotPromoteQF /> <w:LidThemeOther>EN-US</w:LidThemeOther> <w:LidThemeAsian>X-NONE</w:LidThemeAsian> <w:LidThemeComplexScript>X-NONE</w:LidThemeComplexScript> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> <w:DontGrowAutofit /> <w:SplitPgBreakAndParaMark /> <w:DontVertAlignCellWithSp /> <w:DontBreakConstrainedForcedTables /> <w:DontVertAlignInTxbx /> <w:Word11KerningPairs /> <w:CachedColBalance /> </w:Compatibility> <m:mathPr> <m:mathFont m:val="Cambria Math" /> <m:brkBin m:val="before" /> <m:brkBinSub m:val="&#45;-" /> <m:smallFrac m:val="off" /> <m:dispDef /> <m:lMargin m:val="0" /> <m:rMargin m:val="0" /> <m:defJc m:val="centerGroup" /> <m:wrapIndent m:val="1440" /> <m:intLim m:val="subSup" /> <m:naryLim m:val="undOvr" /> </m:mathPr></w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml> <w:LatentStyles DefLockedState="false" DefUnhideWhenUsed="true"   DefSemiHidden="true" DefQFormat="false" DefPriority="99"   LatentStyleCount="267"> <w:LsdException Locked="false" Priority="0" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Normal" /> <w:LsdException Locked="false" Priority="9" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="heading 1" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 2" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 3" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 4" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 5" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 6" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 7" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 8" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 9" /> <w:LsdException Locked="false" Priority="39" Name="toc 1" /> <w:LsdException Locked="false" Priority="39" Name="toc 2" /> <w:LsdException Locked="false" Priority="39" Name="toc 3" /> <w:LsdException Locked="false" Priority="39" Name="toc 4" /> <w:LsdException Locked="false" Priority="39" Name="toc 5" /> <w:LsdException Locked="false" Priority="39" Name="toc 6" /> <w:LsdException Locked="false" Priority="39" Name="toc 7" /> <w:LsdException Locked="false" Priority="39" Name="toc 8" /> <w:LsdException Locked="false" Priority="39" Name="toc 9" /> <w:LsdException Locked="false" Priority="35" QFormat="true" Name="caption" /> <w:LsdException Locked="false" Priority="10" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Title" /> <w:LsdException Locked="false" Priority="1" Name="Default Paragraph Font" /> <w:LsdException Locked="false" Priority="11" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtitle" /> <w:LsdException Locked="false" Priority="22" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Strong" /> <w:LsdException Locked="false" Priority="20" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Emphasis" /> <w:LsdException Locked="false" Priority="59" SemiHidden="false"    UnhideWhenUsed="false" Name="Table Grid" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Placeholder Text" /> <w:LsdException Locked="false" Priority="1" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="No Spacing" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 1" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 1" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 1" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 1" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 1" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Revision" /> <w:LsdException Locked="false" Priority="34" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="List Paragraph" /> <w:LsdException Locked="false" Priority="29" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Quote" /> <w:LsdException Locked="false" Priority="30" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Quote" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 1" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 1" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 1" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 1" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 1" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 1" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 1" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 2" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 2" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 2" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 2" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 2" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 2" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 2" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 2" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 2" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 2" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 2" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 3" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 3" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 3" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 3" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 3" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 3" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 3" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 3" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 3" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 3" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 3" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 3" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 3" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 4" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 4" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 4" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 4" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 4" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 4" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 4" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 4" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 4" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 4" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 4" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 4" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 4" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 4" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 5" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 5" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 5" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 5" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 5" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 5" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 5" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 5" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 5" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 5" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 5" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 5" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 5" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 5" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 6" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 6" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 6" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 6" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 6" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 6" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 6" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 6" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 6" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 6" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 6" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 6" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 6" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 6" /> <w:LsdException Locked="false" Priority="19" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Emphasis" /> <w:LsdException Locked="false" Priority="21" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Emphasis" /> <w:LsdException Locked="false" Priority="31" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Reference" /> <w:LsdException Locked="false" Priority="32" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Reference" /> <w:LsdException Locked="false" Priority="33" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Book Title" /> <w:LsdException Locked="false" Priority="37" Name="Bibliography" /> <w:LsdException Locked="false" Priority="39" QFormat="true" Name="TOC Heading" /> </w:LatentStyles> </xml><![endif]--> <!--[if gte mso 10]><br />
<mce:style><!   /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-qformat:yes; 	mso-style-parent:""; 	mso-padding-alt:0in 5.4pt 0in 5.4pt; 	mso-para-margin-top:0in; 	mso-para-margin-right:0in; 	mso-para-margin-bottom:10.0pt; 	mso-para-margin-left:0in; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:"Times New Roman"; 	mso-fareast-theme-font:minor-fareast; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin;} --></p>
<p><!--[endif]--></p>
<p class="MsoNormal">$1,901,269 is how much attackers were able to wire out of Experi-Metal’s Comerica bank account in the span of three hours. This was a <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Phishing" target="_blank">phishing attack</a> that cause damage to <a title="EMI Website" href="http://www.experi-metal.com/" target="_blank">Experi-Metal Inc. (EMI)’s</a> financial assets and raised the questions of liability and “What is reasonable security?”</p>
<p class="MsoNormal">The continuing court case is attempting to answer that question. Looking at the facts, although Comerica was putting authentication policies in place, such as using secure token technology, there was still a user created gap which allowed for the attackers to gain access. An attack only needs access to happen.</p>
<p class="MsoNormal">Although <a title="Comerica Bank Website" href="http://www.comerica.com/vgn-ext-templating/v/index.jsp?vgnextoid=8888577d17a31010VgnVCM1000004302a8c0RCRD" target="_blank">Comerica</a> was able to recover all of the funds but $560,000 EMI is still pressing charges, saying that Comerica exposed EMI’s users to the phishing attack. Comerica is of course implying that any EMI employee responsible for financial transactions should have caught on that the phishing site was a scam.</p>
<p class="MsoNormal">The decision has still not been made in the favor of either company in terms of liability. Although the contracts originally signed by the two companies will favor Comerica Bank, the fact that the banking industry demands stronger authentication and therefore Comerica has easier access to advanced technologies does not look good for them. It will be interesting to see how the case progresses in mid-November.</p>
<p class="MsoNormal"><a title="BankInfoSecurity.com" href="http://www.bankinfosecurity.com/" target="_blank">BankInfoSecurity.com</a>: to read and have a copy of the full article - <a title="Full Article" href="http://www.bankinfosecurity.com/articles.php?art_id=2763&amp;pg=3 " target="_blank">Click Here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=333</wfw:commentRss>
		</item>
		<item>
		<title>Authentication Adaptability: Survival is Key</title>
		<link>http://blog.pistolstar.us/blog/?p=323</link>
		<comments>http://blog.pistolstar.us/blog/?p=323#comments</comments>
		<pubDate>Thu, 02 Sep 2010 20:32:55 +0000</pubDate>
		<dc:creator>Chief Content Writer</dc:creator>
		
		<category><![CDATA[Authentication Trends]]></category>

		<category><![CDATA[General Information]]></category>

		<category><![CDATA[PortalGuard]]></category>

		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[adapt]]></category>

		<category><![CDATA[chat-in-the-middle]]></category>

		<category><![CDATA[financial]]></category>

		<category><![CDATA[fraud]]></category>

		<category><![CDATA[healthcare]]></category>

		<category><![CDATA[identity theft]]></category>

		<category><![CDATA[insurance]]></category>

		<category><![CDATA[keystroke logging]]></category>

		<category><![CDATA[malware]]></category>

		<category><![CDATA[One Time Password]]></category>

		<category><![CDATA[phishing]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[session mismanagement]]></category>

		<category><![CDATA[smishing]]></category>

		<category><![CDATA[spoofing]]></category>

		<category><![CDATA[stronger authentication]]></category>

		<category><![CDATA[vishing]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=323</guid>
		<description><![CDATA[ 

“It is not the strongest of the species that survives, nor the most intelligent that survives. It is the one that is the most adaptable to change.” – Charles Darwin
As Charles Darwin has put it so eloquently, facing change by adapting to it is how you survive. This can easily be translated over to [...]]]></description>
			<content:encoded><![CDATA[<p><!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:TrackMoves /> <w:TrackFormatting /> <w:PunctuationKerning /> <w:ValidateAgainstSchemas /> <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid> <w:IgnoreMixedContent>false</w:IgnoreMixedContent> <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText> <w:DoNotPromoteQF /> <w:LidThemeOther>EN-US</w:LidThemeOther> <w:LidThemeAsian>X-NONE</w:LidThemeAsian> <w:LidThemeComplexScript>X-NONE</w:LidThemeComplexScript> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> <w:DontGrowAutofit /> <w:SplitPgBreakAndParaMark /> <w:DontVertAlignCellWithSp /> <w:DontBreakConstrainedForcedTables /> <w:DontVertAlignInTxbx /> <w:Word11KerningPairs /> <w:CachedColBalance /> </w:Compatibility> <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel> <m:mathPr> <m:mathFont m:val="Cambria Math" /> <m:brkBin m:val="before" /> <m:brkBinSub m:val="&#45;-" /> <m:smallFrac m:val="off" /> <m:dispDef /> <m:lMargin m:val="0" /> <m:rMargin m:val="0" /> <m:defJc m:val="centerGroup" /> <m:wrapIndent m:val="1440" /> <m:intLim m:val="subSup" /> <m:naryLim m:val="undOvr" /> </m:mathPr></w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml> <w:LatentStyles DefLockedState="false" DefUnhideWhenUsed="true"   DefSemiHidden="true" DefQFormat="false" DefPriority="99"   LatentStyleCount="267"> <w:LsdException Locked="false" Priority="0" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Normal" /> <w:LsdException Locked="false" Priority="9" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="heading 1" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 2" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 3" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 4" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 5" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 6" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 7" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 8" /> <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 9" /> <w:LsdException Locked="false" Priority="39" Name="toc 1" /> <w:LsdException Locked="false" Priority="39" Name="toc 2" /> <w:LsdException Locked="false" Priority="39" Name="toc 3" /> <w:LsdException Locked="false" Priority="39" Name="toc 4" /> <w:LsdException Locked="false" Priority="39" Name="toc 5" /> <w:LsdException Locked="false" Priority="39" Name="toc 6" /> <w:LsdException Locked="false" Priority="39" Name="toc 7" /> <w:LsdException Locked="false" Priority="39" Name="toc 8" /> <w:LsdException Locked="false" Priority="39" Name="toc 9" /> <w:LsdException Locked="false" Priority="35" QFormat="true" Name="caption" /> <w:LsdException Locked="false" Priority="10" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Title" /> <w:LsdException Locked="false" Priority="1" Name="Default Paragraph Font" /> <w:LsdException Locked="false" Priority="11" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtitle" /> <w:LsdException Locked="false" Priority="22" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Strong" /> <w:LsdException Locked="false" Priority="20" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Emphasis" /> <w:LsdException Locked="false" Priority="59" SemiHidden="false"    UnhideWhenUsed="false" Name="Table Grid" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Placeholder Text" /> <w:LsdException Locked="false" Priority="1" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="No Spacing" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 1" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 1" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 1" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 1" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 1" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 1" /> <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Revision" /> <w:LsdException Locked="false" Priority="34" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="List Paragraph" /> <w:LsdException Locked="false" Priority="29" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Quote" /> <w:LsdException Locked="false" Priority="30" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Quote" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 1" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 1" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 1" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 1" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 1" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 1" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 1" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 1" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 2" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 2" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 2" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 2" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 2" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 2" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 2" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 2" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 2" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 2" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 2" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 2" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 2" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 2" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 3" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 3" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 3" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 3" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 3" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 3" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 3" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 3" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 3" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 3" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 3" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 3" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 3" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 3" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 4" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 4" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 4" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 4" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 4" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 4" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 4" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 4" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 4" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 4" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 4" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 4" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 4" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 4" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 5" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 5" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 5" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 5" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 5" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 5" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 5" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 5" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 5" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 5" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 5" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 5" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 5" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 5" /> <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 6" /> <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 6" /> <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 6" /> <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 6" /> <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 6" /> <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 6" /> <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 6" /> <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 6" /> <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 6" /> <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 6" /> <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 6" /> <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 6" /> <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 6" /> <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 6" /> <w:LsdException Locked="false" Priority="19" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Emphasis" /> <w:LsdException Locked="false" Priority="21" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Emphasis" /> <w:LsdException Locked="false" Priority="31" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Reference" /> <w:LsdException Locked="false" Priority="32" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Reference" /> <w:LsdException Locked="false" Priority="33" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Book Title" /> <w:LsdException Locked="false" Priority="37" Name="Bibliography" /> <w:LsdException Locked="false" Priority="39" QFormat="true" Name="TOC Heading" /> </w:LatentStyles> </xml><![endif]--> <!--[if gte mso 10]><br />
<mce:style><!   /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-qformat:yes; 	mso-style-parent:""; 	mso-padding-alt:0in 5.4pt 0in 5.4pt; 	mso-para-margin-top:0in; 	mso-para-margin-right:0in; 	mso-para-margin-bottom:10.0pt; 	mso-para-margin-left:0in; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin;} --></p>
<p><!--[endif]--></p>
<p class="MsoNormal"><em>“It is not the strongest of the species that survives, nor the most intelligent that survives. It is the one that is the most adaptable to change.”<strong> </strong></em>– Charles Darwin</p>
<p class="MsoNormal">As Charles Darwin has put it so eloquently, facing change by adapting to it is how you survive. This can easily be translated over to authentication and the principles behind <a title="PortalGuard Homepage" href="http://www.portalguard.com" target="_blank">strengthening authentication to adapt to changing circumstances</a>.</p>
<p class="MsoNormal">The idea is that change is inevitable and businesses will be weeded out by their ability to adapt. With <a title="PortalGuard Homepage" href="http://www.portalguard.com" target="_blank">authentication and security</a> this is an ongoing challenge facing businesses in the form of regulatory compliance, authentication trends and ever increasing attacks. <span> </span></p>
<p class="MsoNormal">Although this is primarily experienced across most industries it is an ever pressing issue on the <a title="Financial Information" href="http://www.pistolstar.com/authentication-solutions/industry/banking_finance.html" target="_blank">financial</a>, <a title="Insurance Information" href="http://www.pistolstar.com/authentication-solutions/industry/insurance.html" target="_blank">insurance</a> and <a title="HIPAA Regulations" href="http://www.pistolstar.com/authentication-solutions/regulation/HIPAA.html" target="_blank">healthcare</a> industries. These industries are heavily regulated and thus subject to constant compliance requirements. Also they are huge carriers of personal information and data making them huge targets for evolving attacks and identity theft.</p>
<p class="MsoNormal">Some of the more prevalent attacks include:</p>
<ul>
<li><a href="http://en.wikipedia.org/wiki/Phishing" target="_blank">Phishing</a></li>
<li><a href="http://en.wikipedia.org/wiki/Malware" target="_blank">Malware</a></li>
<li><a href="http://en.wikipedia.org/wiki/Keystroke_logging" target="_blank">Keystroke Loggers</a></li>
<li><a href="http://en.wikipedia.org/wiki/Session_management" target="_blank">Session Mismanagement</a></li>
<li>Fraudulent Droid apps</li>
<li>Chat-in-the-Middle</li>
<li><a href="http://en.wikipedia.org/wiki/Spoofing_attack" target="_blank">Spoofing</a></li>
<li><a href="http://en.wikipedia.org/wiki/Vishing" target="_blank">Vishing</a></li>
<li><a href="http://en.wikipedia.org/wiki/SMiShing" target="_blank">Smishing</a></li>
<li>And many more&#8230;</li>
</ul>
<p class="MsoNormal">An adaptation example, in the financial industry, has been the popularity and increasing use of online banking. Although it is extremely convenient for the end-users, the question is how will the financial industry adapt their authentication to protect users’ extremely sensitive data out on the internet?</p>
<p class="MsoNormal">In order to adapt financial institutions follow the FFIEC guidelines, implement <a title="PortalGuard Homepage" href="http://www.portalguard.com" target="_blank">multi-factor authentication </a>and <a href="http://www.portalguard.com" target="_blank">stronger authentication</a> such as <a href="http://www.portalguard.com" target="_blank">one-time passwords</a>. The financial industry is required to have a high level of data protection and therefore is leading the way in authentication and security. By reviewing vulnerable industries it is a great way to understand where to set the bar for your required level of data protection.</p>
<p class="MsoNormal">
<p class="MsoNormal">
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=323</wfw:commentRss>
		</item>
		<item>
		<title>PortalGuard Climbs the SharePoint Summit</title>
		<link>http://blog.pistolstar.us/blog/?p=315</link>
		<comments>http://blog.pistolstar.us/blog/?p=315#comments</comments>
		<pubDate>Mon, 26 Apr 2010 14:27:18 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[PortalGuard]]></category>

		<category><![CDATA[SharePoint Authentication]]></category>

		<category><![CDATA[Climbing the SharePoint Summit]]></category>

		<category><![CDATA[deliver effective password policies]]></category>

		<category><![CDATA[enhance compliance]]></category>

		<category><![CDATA[implementing best practices]]></category>

		<category><![CDATA[PistolStar]]></category>

		<category><![CDATA[SharePointPro Virtual Conference]]></category>

		<category><![CDATA[stronger authentication]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=315</guid>
		<description><![CDATA[
Come join PortalGuard by PistolStar, Inc. at the SharePointPro Virtual Conference, Climbing the Sharepoint Summit. No need to leave your office, just join us online to ask us any questions you like May 20th 9:00am-4:00pm EST. The best part is that registration is open to anyone and free!
Come see if PortalGuard is right for your company! See how [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/portalguard-logo.jpg"></a><img class="size-medium wp-image-316" title="sharepoint-virtual-show-banner" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/04/sharepoint-virtual-show-banner-300x46.jpg" alt="Climb the Sharepoint Summit" width="405" height="66" /></p>
<p class="wp-caption-dt">Come join PortalGuard by PistolStar, Inc. at the SharePointPro Virtual Conference, Climbing the Sharepoint Summit. No need to leave your office, just join us online to ask us any questions you like May 20th 9:00am-4:00pm EST. The best part is that registration is open to anyone and free!</p>
<p>Come see if PortalGuard is right for your company! See how you can meet or exceed your security objectives, including:</p>
<ul>
<li>Stronger Authentication</li>
<li>Reducing Risk - both financial and security</li>
<li>Enhance compliance with both security and industry standards</li>
<li>Deliver effective password policies</li>
<li>Implement Best Practices</li>
</ul>
<p>And Many More&#8230;</p>
<p><a title="Conference Website &amp; Information" href="https://www.vconferenceonline.com/shows/spring10/sharepointsummit/sponsors.asp" target="_blank">Conference Website &amp; Information</a></p>
<p><a title="PortalGuard Homepage" href="http://www.portalguard.com" target="_blank">PortalGuard Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=315</wfw:commentRss>
		</item>
		<item>
		<title>PortalGuard has Great Success at the 2010 SharePointPro Summit &#038; Expo</title>
		<link>http://blog.pistolstar.us/blog/?p=304</link>
		<comments>http://blog.pistolstar.us/blog/?p=304#comments</comments>
		<pubDate>Mon, 29 Mar 2010 18:39:42 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[General Information]]></category>

		<category><![CDATA[PortalGuard]]></category>

		<category><![CDATA[SharePoint Authentication]]></category>

		<category><![CDATA[SharePointPro Summit &amp; Expo]]></category>

		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[SharePoint]]></category>

		<category><![CDATA[specific requirements]]></category>

		<category><![CDATA[tailored authentication]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=304</guid>
		<description><![CDATA[
Thanks for Stopping By!
We first would like to extend a thank you out to those of you who stopped by our booth at the SharePointPro Summit this year. It was fascinating to hear about how SharePoint authentication and security is being handled, what specific requirements you are looking for, and how PortalGuard or Tailored Authentication [...]]]></description>
			<content:encoded><![CDATA[<p><strong><a href="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/sharepointpro-logo.jpg"><img class="alignnone size-medium wp-image-291" title="sharepointpro-logo" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/sharepointpro-logo.jpg" alt="" width="173" height="48" /></a></strong></p>
<p><strong>Thanks for Stopping By!</strong></p>
<p>We first would like to extend a thank you out to those of you who stopped by our booth at the SharePointPro Summit this year. It was fascinating to hear about how SharePoint authentication and security is being handled, what specific requirements you are looking for, and how PortalGuard or Tailored Authentication could help you with your SharePoint security needs.</p>
<p>If you did not have a chance to see us at the show, then we encourage you to visit PortalGuard.com, to see how PortalGuard is <em>the</em> solution for meeting and exceeding your security objectives. PortalGuard is supported on multiple platforms including Microsoft SharePoint/IIS, IBM Websphere/Websphere Portal, and Lotus Domino.</p>
<p><strong>PortalGuard:</strong></p>
<p>PortalGuard is an authentication and security solution that allows end-users to securely authenticate and manage their portal login credentials directly from a Web browser, while providing administrators with functionality to meet or exceed their security objectives. With PortalGuard, administrators can implement best practices for ensuring stronger and consistently secure authentication. <a title="PortalGuard.com" href="http://www.portalguard.com">Learn More&#8230;</a></p>
<p><strong>Extensible Authentication Framework:</strong></p>
<p>Many of our customers implement our standard Password Power Plug-ins - the authentication software framework offers robust functionality and feature-rich security, access control, and password management.</p>
<p>But for those customers who have a unique user base, organizational complexities, specific security and compliance requirements or multiple and diverse applications, our expert professional services and development team will develop a solution adapted to their environment and delivered within the framework of our standard Password Power software product, including ongoing technical support. <a title="Tailored Services" href="http://www.pistolstar.com/tailored-services.html" target="_blank">Learn More&#8230;</a></p>

<a href='http://blog.pistolstar.us/blog/?attachment_id=306' title='The Booth'><img src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/03/img_1128-150x150.jpg" width="150" height="150" class="attachment-thumbnail" alt="" /></a>
<a href='http://blog.pistolstar.us/blog/?attachment_id=308' title='Mark and Kim Representing PortalGuard at the Booth'><img src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/03/img_11311-150x150.jpg" width="150" height="150" class="attachment-thumbnail" alt="" /></a>
<a href='http://blog.pistolstar.us/blog/?attachment_id=309' title='What Are Your Specific Requirements?'><img src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/03/img_1132-150x150.jpg" width="150" height="150" class="attachment-thumbnail" alt="" /></a>

]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=304</wfw:commentRss>
		</item>
		<item>
		<title>PistolStar Brings PortalGuard to the SharePointPro Summit &#038; Expo</title>
		<link>http://blog.pistolstar.us/blog/?p=292</link>
		<comments>http://blog.pistolstar.us/blog/?p=292#comments</comments>
		<pubDate>Wed, 24 Feb 2010 17:54:46 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[General Information]]></category>

		<category><![CDATA[SharePoint Authentication]]></category>

		<category><![CDATA[SharePointPro Summit &amp; Expo]]></category>

		<category><![CDATA[PortalGuard]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=292</guid>
		<description><![CDATA[ 
PistolStar Brings PortalGuard to the SharePointPro Summit &#38; Expo on March 17th &#38; 18th, in Las Vegas!
Come stop by booth #508 for more information on:
PortalGuard:
PortalGuard is an authentication and security solution that allows end-users to securely authenticate and manage a portal password directly from a Web browser, while providing administrators with functionality to meet or [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/sharepointpro-logo.jpg"></a><a href="http://www.sharepointprosummit.com/"><img class="alignnone size-medium wp-image-291" title="sharepointpro-logo" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/sharepointpro-logo.jpg" alt="" width="211" height="56" /></a> <a href="http://www.portalguard.com"><img class="alignnone size-medium wp-image-293" title="portalguard-logo" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/portalguard-logo-300x78.jpg" alt="" width="251" height="55" /></a><a href="http://blog.pistolstar.us/blog/wp-content/uploads/2010/02/portalguard-logo.jpg"></a><a href="http://www.portalguard.com/"></a></p>
<p>PistolStar Brings PortalGuard to the <a title="Conference Exhibitors" href="http://www.devconnections.com/shows/sp2010sp/default.asp?c=6&amp;s=147" target="_blank"><strong>SharePointPro Summit &amp; Expo</strong> </a>on March 17th &amp; 18th, in Las Vegas!</p>
<p>Come stop by <strong>booth #508</strong> for more information on:</p>
<p><strong>PortalGuard:</strong></p>
<p>PortalGuard is an authentication and security solution that allows end-users to securely authenticate and manage a portal password directly from a Web browser, while providing administrators with functionality to meet or exceed their security objectives. With PortalGuard, administrators can implement best practices for ensuring stronger and consistently secure authentication.</p>
<p class="style11"><em>Security &amp; Auditing:</em></p>
<ul style="margin-bottom: 0px;">
<li>One-Time Password - stop being vulnerable to replay attacks</li>
<li>Limit multiple concurrent logon sessions - prevent multiple users from logging in with the same set of credentials</li>
<li>Define strike-out limits by person, group or hierarchy – Alerts are emailed when strike-out limits are exceeded</li>
<li>Lockout inactive users after &#8220;n&#8221; days – Identify and stop access to dormant user accounts</li>
</ul>
<p> <em>Help Desk and End-User Productivity:</em></p>
<ul style="margin-bottom: 0px;">
<li>Self-service Active Directory password reset via challenge question/response — Highly configurable and secure!</li>
<li>Prove your identity to the help desk - by providing highly configurable challenge question and answer functionality</li>
</ul>
<p> <em>Services:</em></p>
<ul>
<li>Tailored Authentication - we deliver a product that will fit precisely with your environment</li>
<li>Excellent Customer Service - receive support directly from the developers</li>
<li>Easy deployment — let us take you by the hand</li>
</ul>
<p> </p>
<p style="margin-bottom: 0px;">† Fully supports &amp; enhances multiple platforms and portals — IBM Lotus Domino (AIX, Solaris, Windows, System i, Linux), IBM WebSphere/WebSphere Portal, and Microsoft SharePoint</p>
<p style="margin-bottom: 0px;"><strong></strong></p>
<p style="margin-bottom: 0px;">For more information please visit: <a title="PortalGuard" href="http://www.portalguard.com" target="_blank">PortalGuard.com</a></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=292</wfw:commentRss>
		</item>
		<item>
		<title>PistolStar is Attending Lotusphere 2010!</title>
		<link>http://blog.pistolstar.us/blog/?p=285</link>
		<comments>http://blog.pistolstar.us/blog/?p=285#comments</comments>
		<pubDate>Tue, 12 Jan 2010 23:05:16 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[Lotusphere 2010]]></category>

		<category><![CDATA[booth 324]]></category>

		<category><![CDATA[PortalGuard]]></category>

		<category><![CDATA[Rule-based Alerts]]></category>

		<category><![CDATA[tailored authentication]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=285</guid>
		<description><![CDATA[
Come stop by booth #324 to learn more about:
PortalGuard:
A password authentication and security solution that allows end-users to securely authenticate and manage a portal password directly from a Web browser.
Tailored Authentication:
For a unique environment and/or situation, which requires specific functionality, our team would make the necessary adaptations to meet or exceed your security objectives, and [...]]]></description>
			<content:encoded><![CDATA[<p class="style10" style="MARGIN-TOP: 0px" align="center"><img class="alignnone size-medium wp-image-286" title="lotusphere2010logo" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/01/lotusphere2010logo-300x108.jpg" alt="" width="138" height="53" /></p>
<p class="style10" style="text-align: left; margin-top: 0px;">Come stop by booth <strong>#324</strong> to learn more about:</p>
<p class="style10" style="MARGIN-BOTTOM: 0px" align="left"><strong>PortalGuard</strong>:</p>
<p class="style10" style="MARGIN-TOP: 0px">A password authentication and security solution that allows end-users to securely authenticate and manage a portal password directly from a Web browser.</p>
<p class="style10" style="MARGIN-BOTTOM: 0px" align="left"><strong>Tailored Authentication</strong>:</p>
<p class="style10" style="MARGIN-TOP: 0px" align="left">For a unique environment and/or situation, which requires specific functionality, our team would make the necessary adaptations to meet or exceed your security objectives, and provide a fully supported product.</p>
<p class="style10" style="MARGIN-BOTTOM: 0px" align="left"><strong>Rule-based Alerts</strong>:</p>
<p class="style10" style="MARGIN-TOP: 0px; MARGIN-BOTTOM: 0px" align="left">Security - Activity Monitoring - making early predictions leads to being proactive instead of reactive.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=285</wfw:commentRss>
		</item>
		<item>
		<title>Bound2Authenticate Presented by Victor Toal at Lotusphere 2010</title>
		<link>http://blog.pistolstar.us/blog/?p=282</link>
		<comments>http://blog.pistolstar.us/blog/?p=282#comments</comments>
		<pubDate>Tue, 12 Jan 2010 23:00:57 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[Authentication Trends]]></category>

		<category><![CDATA[Lotusphere 2010]]></category>

		<category><![CDATA[Bound 2 Authenticate]]></category>

		<category><![CDATA[Bound2Authenticate]]></category>

		<category><![CDATA[Lotusphere]]></category>

		<category><![CDATA[PistolStar session]]></category>

		<category><![CDATA[Victor Toal]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=282</guid>
		<description><![CDATA[  Bound2Authenticate Presented By Victor Toal
When:
Tuesday, January 19, 2010
2:00pm-3:00pm
Where:
Lotusphere, Swan Hotel, Ibis Room
An exclusive raffle is offered to all attendees.
Speaker Information:
Victor Toal is a messaging and collaboration architect and engineer with more than 15 years experience with Domino (since R 4.1), Sametime, Quickr, Lotus Connections, and WebSphere. Victor&#8217;s clients include the Pentagon, US Army, banks, [...]]]></description>
			<content:encoded><![CDATA[<p><strong><a href="http://blog.pistolstar.us/blog/wp-content/uploads/2010/01/vtoal_headshot02.jpg"><img class="size-medium wp-image-283" title="vtoal_headshot02" src="http://blog.pistolstar.us/blog/wp-content/uploads/2010/01/vtoal_headshot02-251x300.jpg" alt="Victor Toal" width="77" height="84" /></a>  Bound2Authenticate</strong> Presented By Victor Toal</p>
<p><strong>When:</strong><br />
Tuesday, January 19, 2010<br />
2:00pm-3:00pm</p>
<p><strong>Where:</strong><br />
Lotusphere, Swan Hotel, Ibis Room</p>
<p>An exclusive raffle is offered to all attendees.</p>
<p><strong>Speaker Information:</strong></p>
<p><strong>Victor Toal</strong> is a messaging and collaboration architect and engineer with more than 15 years experience with Domino (since R 4.1), Sametime, Quickr, Lotus Connections, and WebSphere. Victor&#8217;s clients include the Pentagon, US Army, banks, as well as manufacturing, tourism, and medical companies. He has worked in the US and overseas (Japan, Austria, Great Britain, Germany, France, Italy, Hungary, Poland, and Czech Republic) and speaks fluent German and Japanese. He is certified in Domino R4-R8.5 and Sametime 7.5 and 8.0.</p>
<p><strong>Unable to attend?</strong> Request a recording of the presentation by visiting the Contact Us page.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=282</wfw:commentRss>
		</item>
		<item>
		<title>The Trojan Horse: Sneaking Past Your City Walls</title>
		<link>http://blog.pistolstar.us/blog/?p=278</link>
		<comments>http://blog.pistolstar.us/blog/?p=278#comments</comments>
		<pubDate>Wed, 04 Nov 2009 19:17:02 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[Authentication Trends]]></category>

		<category><![CDATA[Data Security]]></category>

		<category><![CDATA[General Information]]></category>

		<category><![CDATA[credential security]]></category>

		<category><![CDATA[financial fraud]]></category>

		<category><![CDATA[malware]]></category>

		<category><![CDATA[Silon]]></category>

		<category><![CDATA[stolen credentials]]></category>

		<category><![CDATA[strong authentication]]></category>

		<category><![CDATA[trojan horse]]></category>

		<category><![CDATA[WIN32.Silon]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=278</guid>
		<description><![CDATA[For centuries the Trojan horse was a weapon of war; a historical piece of trickery and deceit, which was used to bring down the City of Troy. Now in this century, when searching the term Trojan horse, the first result to appear is about the technology verison of the  Trojan horse. As many of us know malware [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">For centuries the <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse </a>was a weapon of war; a historical piece of trickery and deceit, which was used to bring down the City of Troy. Now in this century, when searching the term <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse</a>, the first result to appear is about the technology verison of the  <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse</a>. </span></span><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">As many of us know <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Malware" target="_blank">malware</a> stands for malicious software. The vehicle in which it obtains its unwanted access is the <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse</a> programs. These carriers are great at disguise, trickery, and breaking down the walls of your personal identity and even financial status. </span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"> </span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">Recently a new <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse</a> program has appeared, and has many concerned. Trojan Horses, as many of us know, are invasive, but this new one goes beyond that, targeting specifically financial institutions and Internet Explorer users. The new name to fear: W32.Silon. </span></span><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">With the target of financial institutions, Silon can intercept Internet Explorer sessions, and steal credentials. Many say this attack has two heads, the generic <a title="Wikipedia Definition" href="http://en.wikipedia.org/wiki/Trojan_horse_(computing)" target="_blank">Trojan horse</a> approach into all applications, and then the financial focus. </span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"> </span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">When it comes to logging onto your bank account online, that is when to watch out. The Silon Trojan will intercept between the token protected financial sites and the user, putting up a façade that looks like their normal login screen. This allows them to transmit your credentials to hackers, to be able to obtain your financial data, and reap the rewards. </span></span><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">The main thing that is clear about this attacker is that it is following and changing wih the authentication trends. With more advanced authentication techniques, attacks are becoming more and more sophisticated. The Silon is a prime example, as it attacks the two prong stronger authentication methods with ease. Bank accounts beware!</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"> </span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;">For more information check out these links:</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"><a href="http://en.wikipedia.org/wiki/Malware">http://en.wikipedia.org/wiki/Malware</a></span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"><a href="http://en.wikipedia.org/wiki/Trojan_horse_(computing">http://en.wikipedia.org/wiki/Trojan_horse_(computing</a>)</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 0pt"><span style="FONT-SIZE: 9pt"><span style="font-family: Calibri;"><a href="http://in.sys-con.com/node/1162320">http://in.sys-con.com/node/1162320</a></span></span></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=278</wfw:commentRss>
		</item>
		<item>
		<title>Issues in Compliance for Instant Messaging</title>
		<link>http://blog.pistolstar.us/blog/?p=274</link>
		<comments>http://blog.pistolstar.us/blog/?p=274#comments</comments>
		<pubDate>Mon, 12 Oct 2009 15:00:56 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[IT Security]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[AOL Instant Messenger]]></category>

		<category><![CDATA[auditing]]></category>

		<category><![CDATA[Copyright Infringement]]></category>

		<category><![CDATA[cybercrime]]></category>

		<category><![CDATA[Dimtry Shapiro]]></category>

		<category><![CDATA[GLBA]]></category>

		<category><![CDATA[HIPAA]]></category>

		<category><![CDATA[information security]]></category>

		<category><![CDATA[Instant Messaging]]></category>

		<category><![CDATA[logging]]></category>

		<category><![CDATA[record retention]]></category>

		<category><![CDATA[Sarbanes-Oxley]]></category>

		<category><![CDATA[SOX]]></category>

		<category><![CDATA[theft]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=274</guid>
		<description><![CDATA[Compliance is always a large concern, especially with attacks and data breaches increasing. It is important to understand the industry and regulatory requirements that need to be enforced within your corporation and security environment. One area that experts are beginning to see as an issue is instant messaging. This is a communication method that is [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="margin: 0in 0in 10pt; line-height: 11.4pt;"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><a title="PistolStar.com" href="http://blog.pistolstar.us/blog/wp-admin/www.pistolstar.com" target="_blank"><span style="color: #2255aa; font-family: Calibri;">Compliance</span></a><span style="font-family: Calibri;"> is always a large concern, especially with attacks and data breaches increasing. It is important to understand the industry and regulatory requirements that need to be enforced within your corporation and security environment. One area that experts are beginning to see as an issue is instant messaging. This is a communication method that is hard to regulate and record, which could pose problems with industries with strict </span><a title="PistolStar.com" href="www.pistolstar.com" target="_blank"><span style="color: #2255aa; font-family: Calibri;">compliance</span></a><span style="font-family: Calibri;"> standards.</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;">In a recent article by </span><a title="Shapiro Article" href="http://searchcio.techtarget.com/news/article/0,289142,sid182_gci967281,00.html" target="_blank"><span style="font-family: Calibri;">Dmitry Shapiro, CTO at Akonix Systems, Inc., “Instant Messaging and Compliance Issues: What You need To Know”</span></a><span style="font-family: Calibri;"> the issues that are becoming ever present with IM are discussed. The main issue is the sheer volume of users on these IM systems, totaling in the 100s of millions. This is not to mention what IT managers are most afraid of, which are the public IM systems, such as AOL Instant Messenger and Yahoo Messenger.</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;">Although IM is a functional tool for communication there are key areas with which there is a lot of concern for </span><a title="PistolStar.com" href="www.pistolstar.com" target="_blank"><span style="color: #2255aa; font-family: Calibri;">compliance</span></a><span style="font-family: Calibri;"> issues:</span></span></p>
<p class="MsoListParagraphCxSpFirst" style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l1 level1 lfo1"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Record Retention</span></span></p>
<p class="MsoListParagraphCxSpMiddle" style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l1 level1 lfo1"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Information Security</span></span></p>
<p class="MsoListParagraphCxSpMiddle" style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l1 level1 lfo1"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Theft</span></span></p>
<p class="MsoListParagraphCxSpLast" style="MARGIN: 0in 0in 10pt 0.75in; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l1 level1 lfo1"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Copyright Infringement</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt"><span style="font-family: Calibri;"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">These issues are ever rising with the number of users and amounts of information on these systems. With the public IM services, the control a manager could have with an internal system is taken away. Tasks such as auditing, logging, and deleting records are all issues when the manager cannot oversee the whole system, and the web of IMs being created. </span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;">Without compliance and monitoring, the one thing that is apparent is that risk will increase. </span><a title="Shapiro Article" href="http://searchcio.techtarget.com/news/article/0,289142,sid182_gci967281,00.html" target="_blank"><span style="font-family: Calibri;">Shapiro</span></a><span style="font-family: Calibri;"> says that the main issues to watch for are:</span></span></p>
<p class="MsoListParagraphCxSpFirst" style="MARGIN: 0in 0in 0pt 90.35pt; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l0 level1 lfo2"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Organization of records</span></span></p>
<p class="MsoListParagraphCxSpMiddle" style="MARGIN: 0in 0in 0pt 90.35pt; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l0 level1 lfo2"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Retention of records</span></span></p>
<p class="MsoListParagraphCxSpMiddle" style="MARGIN: 0in 0in 0pt 90.35pt; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l0 level1 lfo2"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Tamper Proof Records</span></span></p>
<p class="MsoListParagraphCxSpMiddle" style="MARGIN: 0in 0in 0pt 90.35pt; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l0 level1 lfo2"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Record Retrieval</span></span></p>
<p class="MsoListParagraphCxSpLast" style="MARGIN: 0in 0in 10pt 90.35pt; TEXT-INDENT: -0.25in; mso-add-space: auto; mso-list: l0 level1 lfo2"><span style="font-family: Calibri;"><span style="mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"><span style="mso-list: Ignore"><span style="font-size: 9pt; color: black; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">-        </span></span></span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Lucida Sans Unicode'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">Off-Site Copies</span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt 162.35pt"><span style="font-family: Calibri;"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;">And many more…</span><span style="font-size: 9pt; color: black; mso-bidi-font-family: 'Times New Roman'; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"></span></span></p>
<p class="MsoNormal" style="MARGIN: 0in 0in 10pt"><span style="font-size: 9pt; color: black; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri;"><span style="font-family: Calibri;">With such acts as the </span><a title="PistolStar's Solutions by Regulation" href="http://www.pistolstar.com/authentication-solutions/regulation/SOX.html" target="_blank"><span style="font-family: Calibri;">Sarbanes-Oxley Act, HIPAA, and GLBA</span></a><span style="font-family: Calibri;"> the ability to control, monitor, protect, and delete records is essential. These regulations are going to require IT managers to remain compliant and come up with ways to monitor their users IM behaviors. If this is not done, IMs will be a strong source of theft and cybercrime. </span></span></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=274</wfw:commentRss>
		</item>
		<item>
		<title>Common Password Attacks: Do You Know How They&#8217;ll Steal Your Password?</title>
		<link>http://blog.pistolstar.us/blog/?p=271</link>
		<comments>http://blog.pistolstar.us/blog/?p=271#comments</comments>
		<pubDate>Tue, 06 Oct 2009 18:26:58 +0000</pubDate>
		<dc:creator>Kimberly Johnson</dc:creator>
		
		<category><![CDATA[Authentication Security]]></category>

		<category><![CDATA[IT Security]]></category>

		<category><![CDATA[password security]]></category>

		<category><![CDATA[authentication bypassing]]></category>

		<category><![CDATA[credential replaying]]></category>

		<category><![CDATA[hackers]]></category>

		<category><![CDATA[hash cracking]]></category>

		<category><![CDATA[keystroke logging]]></category>

		<category><![CDATA[knowledge is power]]></category>

		<category><![CDATA[password attacks]]></category>

		<category><![CDATA[password guessing]]></category>

		<category><![CDATA[password sniffing]]></category>

		<category><![CDATA[password theft]]></category>

		<category><![CDATA[social engineering]]></category>

		<guid isPermaLink="false">http://blog.pistolstar.us/blog/?p=271</guid>
		<description><![CDATA[Just like we have multiple ways to secure our passwords, hackers have multiple ways to steal them right out from underneath us. Passwords are so valuable to us, some can hardly imagine letting one slip into the wrong hands. So the main question is how do you protect yourself?
The key is being aware of what [...]]]></description>
			<content:encoded><![CDATA[<p>Just like we have multiple ways to secure our passwords, hackers have multiple ways to steal them right out from underneath us. Passwords are so valuable to us, some can hardly imagine letting one slip into the wrong hands. So the main question is how do you protect yourself?</p>
<p>The key is being aware of what types of attacks are able to steal your password, and understanding what <a title="PistolStar.com" href="www.pistolstar.com" target="_blank">precautions to take</a>. In a recent article by <a title="InfoWorld Article" href="http://www.gss.co.uk/news/article/6658/Prepare_for_the_next_password_attack/" target="_blank">InfoWorld</a>, “<a title="InfoWorld Article" href="http://www.gss.co.uk/news/article/6658/Prepare_for_the_next_password_attack/" target="_blank">Prepare for the Next Password Attack</a>”, the most popular attacks were listed, so that awareness is possible.</p>
<p>• <strong>Authentication Bypassing</strong> – just like it sounds, it bypasses password security<br />
• <strong>Password Guessing</strong> – hackers attempt to guess credentials by testing tons of passwords until the correct one is guessed. This is usually automated.<br />
• <strong>Password Sniffing</strong> – picks up plain text passwords over a network<br />
• <strong>Keystroke Logging</strong> – records what users physically type in when logging on by recording keystrokes<br />
• <strong>Hash Cracking</strong> – uses bypassing to go into an authentication database, and steal stored credentials<br />
•<strong> Credential Replaying</strong> – replay a stolen password over a network<br />
• <strong>Social Engineering</strong> – this includes over the phone, in person, and other alternative ways besides    technology that someone can steal your password</p>
<p>This article does a great job of outlining the common attacks on passwords. With all of this attack talk it is almost frightening to have passwords at all. Putting up defenses is the best way to prevent these attacks, and as said before to be aware of them. By enforcing strong authentication mechanisms and password policies, it is possible to never experience an attack. Just remember knowledge is power.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.pistolstar.us/blog/?feed=rss2&amp;p=271</wfw:commentRss>
		</item>
	</channel>
</rss>
