<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Wistful Thinking &#187; Internet</title>
	<atom:link href="http://www.wistful-thinking.com/archives/category/internet/feed" rel="self" type="application/rss+xml" />
	<link>http://www.wistful-thinking.com</link>
	<description>Ponderables, Observations and other things that floweth from my brain</description>
	<lastBuildDate>Fri, 04 Dec 2009 18:00:47 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Fight Phishing &#8211; The Perfect Plan</title>
		<link>http://www.wistful-thinking.com/archives/121</link>
		<comments>http://www.wistful-thinking.com/archives/121#comments</comments>
		<pubDate>Wed, 24 Jun 2009 17:42:59 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Identity Theft]]></category>

		<guid isPermaLink="false">http://www.wistful-thinking.com/?p=121</guid>
		<description><![CDATA[I have devised a simple approach to the ever-growing problem of Internet Phishing.
Having worked on the Internet since its birth, I have been keenly aware of this problem; watching it grow in a non-linear fashion in recent years.  There are numerous technology solutions; some quite complex and annoying. But this is really not a [...]]]></description>
			<content:encoded><![CDATA[<p>I have devised a simple approach to the ever-growing problem of <a href="http://www.webopedia.com/DidYouKnow/Internet/2005/phishing.asp">Internet Phishing</a>.</p>
<p>Having worked on the Internet since its birth, I have been keenly aware of this problem; watching it grow in a non-linear fashion in recent years.  There are numerous <em>technology</em> solutions; some quite <a href="http://en.wikipedia.org/wiki/Anti-phishing_software">complex</a> and <a href="http://en.wikipedia.org/wiki/Internet_Explorer">annoying</a>. But this is really not a <em>technology </em>problem.  It is a <strong>human problem</strong>.<br />
We need help, as human beings, in managing our Internet experience.</p>
<p>I have a solution.  I ask you to bear with me &#8211; understand how this works &#8211; and indulge me in giving it a try.  Together, we may just revolutionize the safety of the Internet!</p>
<p>Whenever you log into a site, get in to the habit of FIRST entering an incorrect password.<br />
&#8220;That sounds ludicrous!&#8221;,  I hear you shouting.  Well think about it this way.<br />
Suppose I am logging into my mortgage bank.  This is a site I go to barely twice a year.  The big banks are also prime targets for <a href="http://en.wikipedia.org/wiki/Phishing">Phishing</a>.<br />
The victim of a successful phishing attempt will provide a valid username and associated password &#8211; believing she is logging into the bank site &#8211; to the criminal.  <strong>And what&#8217;s more disturbing</strong>, the victim is completely unaware it even happened!</p>
<p><span style="font-size:110%;">With my plan to fight Phishing this changes.</span></p>
<div style="width:80%; margin:10px; background-color:#606060; border:2px; border-color:#555;padding: 0.5em 1em;">
<p>If I have correctly arrived at my bank&#8217;s site, it will:<br />
 a. recognize my erroneous entry<br />
 b. prompt me to try again<br />
On that second attempt I will successful access my account</p></div>
<p><span style="font-size:110%;">If this is a phishing site it will</span></p>
<div style="width:80%; margin:10px; background-color:#606060; border:2px; border-color:#555;padding: 0.5em 1em;">
<p> a. gladly accept my first entry &#8211; pretending to log me into my bank site &#8211; having STOLEN my username and the password I provided.  <span sytle="font-size:80%;">This is because, as a phony site, it does not know my password and cannot detect that my entry was invalid.</span><br />
 b. The phisher has NOT SUCCESSFULLY stolen my login information<br />
 c. I am instantly alerted to the fact that something is wrong</div>
<p>#Revenge on the bad guys<br />
What&#8217;s more noteworthy is that I have provided the phisher useless infromation.  He will sell the set of username/passwords collected and, over time, be recognized as a bad source when a large number of them are incorrect.</p>
<p>I think it is a perfect plan!  If we all make the committment to inconvenience ourselves just a little there might be a day that phishing is extinct!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.wistful-thinking.com/archives/121/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
