April 12, 2007
slight paranoia: A Deceit-Augmented Man In The Middle Attack Against Bank of America's SiteKey Service
Those anti-phishing “pick a photo and a phrase that must be displayed when you login to your bank” systems? Work-aroundable by smart-enough phishers. Wonder where the arms race goes next?