<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.3.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>
<channel>
	<title>Comments on: Nine Low-Tech Ways to Increase Your Security</title>
	<link>http://wealthfly.com/blog/2007/10/31/security-attacks-are-changing/</link>
	<description>A blog for investment advisors, brokers and financial planners.</description>
	<pubDate>Tue, 06 Jan 2009 12:26:50 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3.3</generator>
		<item>
		<title>By: Mike Benson</title>
		<link>http://wealthfly.com/blog/2007/10/31/security-attacks-are-changing/#comment-418</link>
		<dc:creator>Mike Benson</dc:creator>
		<pubDate>Fri, 02 Nov 2007 02:56:21 +0000</pubDate>
		<guid>http://wealthfly.com/blog/2007/10/31/security-attacks-are-changing/#comment-418</guid>
		<description>Sensitive data should never... never... be accessed from a public computer (like the ones in an internet cafe).  You should never access sensitive data using a &lt;a target="_blank" title="Wikipedia WIFI" href="http://en.wikipedia.org/wiki/Wifi"&gt;wifi&lt;/a&gt; connection in a public location.

Many financial firms will not even allow wireless connections inside their own building.  &lt;a target="_blank" title="Wikipedia WEP" href="http://en.wikipedia.org/wiki/Wired_Equivalent_Privacy"&gt;WEP&lt;/a&gt; encryption can be cracked in under 15 minutes and then all your data can be captured.

If &lt;em&gt;your&lt;/em&gt; computer in &lt;em&gt;your&lt;/em&gt; office gets compromised, then your web browser sessions are also compromised.  Probably no more than any other software though.  An attacker could just key log everything no matter what the application is.</description>
		<content:encoded><![CDATA[<p>Sensitive data should never&#8230; never&#8230; be accessed from a public computer (like the ones in an internet cafe).  You should never access sensitive data using a <a href="http://en.wikipedia.org/wiki/Wifi"target="_blank" title="Wikipedia WIFI"  onclick="javascript:pageTracker._trackPageview('/outbound/comment/http://en.wikipedia.org/wiki/Wifi');">wifi</a> connection in a public location.</p>
<p>Many financial firms will not even allow wireless connections inside their own building.  <a href="http://en.wikipedia.org/wiki/Wired_Equivalent_Privacy"target="_blank" title="Wikipedia WEP"  onclick="javascript:pageTracker._trackPageview('/outbound/comment/http://en.wikipedia.org/wiki/Wired_Equivalent_Privacy');">WEP</a> encryption can be cracked in under 15 minutes and then all your data can be captured.</p>
<p>If <em>your</em> computer in <em>your</em> office gets compromised, then your web browser sessions are also compromised.  Probably no more than any other software though.  An attacker could just key log everything no matter what the application is.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bill Ramsay</title>
		<link>http://wealthfly.com/blog/2007/10/31/security-attacks-are-changing/#comment-416</link>
		<dc:creator>Bill Ramsay</dc:creator>
		<pubDate>Wed, 31 Oct 2007 16:39:11 +0000</pubDate>
		<guid>http://wealthfly.com/blog/2007/10/31/security-attacks-are-changing/#comment-416</guid>
		<description>Interesting connection between the last two posts.  I took a look at XLR8, and noticed the breadth of data that is stored, and wondered about employees logging on from questionable computers.   If you have a compromised computer, to what extent can a thief steal browser displayed data?  The combination of names, socials, login usernames and passwords, birthdates, addresses are all there.</description>
		<content:encoded><![CDATA[<p>Interesting connection between the last two posts.  I took a look at XLR8, and noticed the breadth of data that is stored, and wondered about employees logging on from questionable computers.   If you have a compromised computer, to what extent can a thief steal browser displayed data?  The combination of names, socials, login usernames and passwords, birthdates, addresses are all there.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
