|
Visit Our E2 Forums |
Education |
Financial Services |
Government |
Healthcare |
Manufacturing |
Retail
New! Focus on: End User Computing
|
||||||
DMARC Hoping to Stop PhishingPablo Valerio, International Business & IT Consultant | 2/9/2012 |
Financial institutions and ISPs have been trying for decades to stop phishing and other techniques that compromise their customers' bank information. Despite big campaigns to educate customers not to access bank Websites via emails, and complex filtering systems to block suspicious messages, many people still get caught and give their login details to those thieves.Banks have increased security measures, including one-time security codes and access cards with coordinates to stop hackers from initiating transactions on customer accounts. But phishing still goes on, costing financial institutions and their customers millions of dollars. Now, an alliance between major leading financial institutions, such as Bank of America, PayPal, and Fidelity, and email providers AOL, Google, Microsoft, and Yahoo will try to put an end to phishing by email. The new organization is called DMARC: Domain-Based Message Authentication, Reporting, and Conformance. Its goal is to establish a standard-based framework for mail senders -- the good guys -- to use email authentication in their infrastructure. Basically, the email providers won't deliver a message that is supposed to be sent from one of the financial institutions unless it is authenticated within the provisions of the framework. Today, email providers rely on databases and complex unreliable methods to discern legitimate messages from fake ones. DMARC framework will provide a simple solution to avoid filtering real emails from financial institutions while blocking other messages that don't have proper authentication. At this point, the DMARC task team is gathering information from the field and will submit its specifications to the IETF for standardization. "Email phishing defrauds millions of people and companies every year, resulting in a loss of consumer confidence in email and the Internet as a whole," said Brett McDowell, Chair of DMARC.org and Senior Manager of Customer Security Initiatives at PayPal. "Industry cooperation -- combined with technology and consumer education -- is crucial to fight phishing." As stated in the organization's Website: "DMARC removes guesswork from the receiver's handling of these failed messages, limiting or eliminating the user's exposure to potentially fraudulent and harmful messages. DMARC also provides a way for the email receiver to report back to the sender about messages that pass and/or fail DMARC evaluation." But hackers are not sleeping; as reported by the BBC, online criminals have found the way to circumvent the latest generation of security directly, without emails, when customers access their bank Websites. In "Man in the Browser" attacks, the malware lives in the browser dormant until the user logs into a financial institution Website. It then gets between the user and the bank's Website and alters its contents, and the customer is unaware of anything being wrong. So phishing can be stopped or reduced by initiatives such as DMARC, but security is always an issue when accessing financial institutions' Websites. It is important to watch for any suspicious changes in the Web and check directly by phone with the bank if something appears to be wrong. The blogs and comments posted on EnterpriseEfficiency.com do not reflect the views of TechWeb, EnterpriseEfficiency.com, or its sponsors. EnterpriseEfficiency.com, TechWeb, and its sponsors do not assume responsibility for any comments, claims, or opinions made by authors and bloggers. They are no substitute for your own research and should not be relied upon for trading or any other purpose. |
More Blogs from Pablo Valerio
Pablo Valerio 5/8/2013
Barcelona has its focus set squarely on the future. The city's future involves a combination of technological innovations in transportation and communications, smart use of mobility, and a ...
Pablo Valerio 5/2/2013
Every grocery shopper knows that supermarket chains have been applying "zoning" for many years, and there is a significant price difference depending where you shop.
Pablo Valerio 4/19/2013
While healthcare companies are struggling to show the ROI of electronics records, there is significantly more progress in mobile health and telemedicine. The Mar-Litoral Integrated Heart ...
Pablo Valerio 4/15/2013
The battle for big-data is moving to all levels of customer information. In an aggressive move, the two biggest credit card companies in the world, Visa and MasterCard, are joining forces ...
Pablo Valerio 3/28/2013
Last year, I wrote a blog about the failure of e-cash experiments, both in Europe and the US. There were many factors to blame, but the trials failed mostly because of reticence from small ...
Latest Archived Broadcast
Data visualization can make complex data easier to grasp. Our expert guest will talk about the hows, whys, and whats of bringing the big picture to your enterprise.
On-demand Video with Chat
NBA CIO Michael Gliedman will tell us why the NBA decided to create NBA.com/stats
6/18/2013 -
Please join us for the "IT Convergence Strategies: Why, When and How " to learn more about:
• 5 truths about infrastructure convergence today that go beyond the hype
• How to exploit the 4 phases of convergence maximum efficiency and agility
• Key milestones to plan for on the convergence journey
• Why integrated management is a critical component of convergence plans
• The importance of an open, modular approach, such as Dell’s active infrastructure, to building a converged data center
E2 IT Migration Zones
Office 365 Finds Fans
Cutting Through the Modern App Confusion
Microsoft Hints at Changes to Windows 8
S’équiper ou non d’un logiciel anti-virus ?
Microsoft passe au facteur deux
Windows Azure Infrastructure Services est disponible !
Microsofts Surface Pro kommt nach Deutschland
Zum Schmunzeln: drei neue Werbeclips für Windows 8
Like Us on Facebook
Dell IT Insights
![]() ![]() Site Moderators Wanted
Enterprise Efficiency is looking for engaged readers to moderate the message boards on this site. Engage in high-IQ conversations with IT industry leaders; earn kudos and perks. Interested? E-mail:
moderators@enterpriseefficiency.com The major problem facing the CIO is how to measure the effectiveness of the IT department. Learn how Dell’s Efficiency Modeling Tool gives the CIO two clear, powerful numbers: Efficiency Quotient and Impact Quotient. These numbers can be transforma¬tive not only to the department, but to the entire enterprise. Read the full report Virtualization is a presence in nearly all enterprise data centers. But not all companies are using it to its best effect. Learn the common characteristics of success, what barriers companies face, and how to get the most from your efforts. Read the full report Cut through the VDI hype and get the full picture -- including ROI and the impact on your Data Center -- to make an informed decision about your virtual desktop infrastructure deployments. Read the full report SPONSORED BY DELL
BRIEFINGS
CASE STUDIES
EBOOKS
PUBLIC SECTOR RESOURCES
VIDEOS
WHITE PAPERS
A Video Case Study – Translational Genomics Research Institute e2 Video
|
|||||
|
|
||||||