[77056] in cryptography@c2.net mail archive
Re: "Free WiFi" man-in-the-middle scam seen in the wild.
daemon@ATHENA.MIT.EDU (Perry E. Metzger)
Tue Jan 23 11:26:42 2007
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
To: Derek Atkins <warlord@MIT.EDU>
Cc: cryptography@metzdowd.com
From: "Perry E. Metzger" <perry@piermont.com>
Date: Tue, 23 Jan 2007 10:34:57 -0500
In-Reply-To: <20070123094427.gahmx6bu4je8ook4@webmail.mit.edu> (Derek Atkins's message of "Tue, 23 Jan 2007 09:44:27 -0500")
Derek Atkins <warlord@MIT.EDU> writes:
> I'll just point out that you CAN go to:
>
> https://chaseonline.chase.com/
>
> And that works, and should be secure.
And for the six people that know to do that, it works great. :)
It used to be that Verizon (my local phone company, sadly) had this
general problem but you could click on "log in" and it would direct
you to a secure page with a little error message and you could then
enter your username and password. They've since "fixed" that so it is
no longer possible to log in safely to their web site at all.
Perry
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com