Phishing
Phishing will not be resolved until the financial institutions take responsibility

Banks told to take responsibility for phishing

Security expert says that only financial institutions can end the problem

Written by Iain Thomson

Phishing could be stopped very quickly if banks were made responsible for the losses incurred, according to security guru Bruce Schneier.

Writing in his Crypto-gram newsletter Schneier noted that, while new anti-phishing laws might have some effect, the problem will not be resolved until the financial institutions take responsibility for fraud, thus giving them an incentive to stop it.

Advertisement

"Push all of the responsibility for identity theft onto the financial institutions, and phishing will go away," said Schneier.

"This fraud will go away not because people will suddenly get smart and quit responding to phishing emails, or because California has new criminal penalties for phishing, or because ISPs will recognise and delete the emails.

"It will go away because the information a criminal can get from a phishing attack will not be enough to commit fraud because the companies won't stand for all those losses."

Schneier maintains that one of the fundamental rules of security is that " the entity that is in the best position to mitigate the risk is responsible for that risk".

While he accepts that many financial organisations already pay for phishing losses directly, this ignores the indirect costs. Damage to credit ratings and time spent opening new bank accounts are all handled by the consumer.

In the past banks have been accused of complacency about the phishing problem, even though it costs billions each year.

Tags:

Related whitepapers

Related jobs

Do you agree?

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

Shaun Nichols and Iain Thomson

10 Oct 2008

7.33 MBPodcast Special: Views from the Valley More...

Podcast image

09 Oct 2008

12.99 MBComputing podcast - IT implications of the banking crisis, and the FSA clamps down on IT security More...

Shaun Nichols and Iain Thomson

03 Oct 2008

6.49 MBPodcast Special: Views from the Valley More...

Poll

Google Android

Google Android

Are you intending to try out a Google Android mobile phone?

Previous poll results

Spotlight

Ministry of Defence

MoD data loss total could hit 1.7 million

New figures far higher than initial estimates   More...

Sun Microsystems

Sun Sparc server shatters seven standards

T5440 sets new benchmark records   More...

Gary McKinnon

Home Office turns down latest McKinnon appeal

Home Secretary informs lawyers of arrangements for US extradition   More...

Network cables

Network Instruments touts nanosecond apps troubleshooting

Observer 13 offers upgraded performance and forensic network analysis   More...

Primary Navigation