Study Finds Online Banking Insecure Due To Security Design Flaws

By Dee Chisamera
14:48, July 24th 2008
47 votes
Vote this story
Study Finds Online Banking Insecure Due To Security Design Flaws

As the number of people carrying their daily business online grows, so does the risk of being exposed to less secure usage, due to design flaws in financial-related websites, a study conducted by the University of Michigan concluded after examining the websites of 214 U.S. financial institutions between November and December 2006.

According to a survey by Pew Internet, 42 percent of all Internet users bank online. Unfortunately, 76 percent of the websites analyzed were found to suffer from at least one design flaw, which appear not to be widely understood, even by experts responsible for web security, the study shows.

Out of the 214 websites surveyed, 30 percent of them were found to break the chain of trust, 47 percent of them presented a login page on an insecure page, 55 percent of them presented contact and other sensitive information on insecure pages, and 31 percent of them allowed e-mail addresses as user names. Only 24 percent of all websites were found to be completely free of any design flaws.

Based on the high occurrence of secure usability design flaws on financial websites, the authors believe that the experts in charge of these institutions do not test for them. This makes users vulnerable to social-engineering and offline attacks as a result of their information being displayed on an insecure page.

The study revealed that while most financial websites today take traditional steps to secure their websites, most of them remain inadequately protected against security usability design flaws, which can prevent users from making proper security decisions.

Atul Prakash, professor in the Department of Electrical Engineering and Computer Science and co-author of the study, pointed out that the design flaws discovered were not only widespread, but included some of the largest banks in the country. “Unfortunately, some banks sites make it hard for customers to make the right security decisions when doing online banking.”

According to a recent FDIC Technology Incident Report, computer intrusions contributed to a $16 million loss in the second quarter of 2007, also showing a 150 percent increase between the first and second quarter of the same year. In 80 percent of the cases, the intrusions occurred during online banking.



© 2007 - 2009 - eFluxMedia
dotclear

Other News in

Toshiba Announces New Line Of Products

Toshiba unveiled on Wednesday a new line of products, including DVD players, VD recorders, Internet-enabled sets, and LCD TV combos, including the new line of Regza TV’s. The Regza line will be...

Introducing This Year’s CES

Introducing This Year’s CES

The International Consumer Electronics Show, which starts Thursday, is definitely one of the most expected events, at least for some devoted gadget-fans. As the annual Consumer Electronics Show...

Cisco Releases Home Audio System

  Cisco Systems has decided, as it has stated, to conquer the consumer market as well as it has the professional crowd. Until now, save for the odd attempt at social networking, nothing...

Jobs-less Macworld, Disappointing

Jobs-less Macworld, Disappointing

You can never say that Macworld is boring – but it can disappoint you. Such was the case of the last Macworld, which has been criticized by tech reviewers for the lack of novelty and low...

Asus’ S121 Notebook Fitted with SSD, Windows 7

Asus’ S121 Notebook Fitted with SSD, Windows 7

On Tuesday, Asustek Computer Incorporated introduced an ultrathin, light netbook called the S121, which is fitted with both the yet to be released Microsoft’s Windows 7 operating system and the...

dotclear
Latest videos in Technology
Gadget Show Goes on Despite...
Apple Announces ITunes Price...
Macworld Goes on Without...
Apple CEO says healthy to lead
IIHS: Small Cars Making...

dotclear
Technology You are here: Technology
» Technology   » Gadgets   » Video Games   
E-mail To A Friend Print RSS Text size: Decrease font size Increase font size
dotclear
dotclear
dotclear
Most Popular in Technology
Wikipedia Raised $6.2 Million from DonationsWikipedia Raised $6.2 Million from Donations

» read full story
dotclear

Interested In This Topic?

News Alert will keep you informed. Find out more.
dotclear
Photos Gallery
dotclear
Today's Latest News
Grim mood at US tech-fests

» read full story
dotclear