Natwest Error Decoding Data From Server
Contents |
Video DIY web site builder Weebly was secured feebly Microsoft kinda did OK this quarter – but whatever, Wall Street loves Satya Nadella Verizon: Data center sale going nicely. youtube is down Yahoo! bid? Not so much Three million debit cards at risk http error 502 after hackers raid Indian payment systems Servers HPC Cloud Storage Data Networking Virtualisation BOFH Microsoft kinda did OK
Youtube Hacked
this quarter – but whatever, Wall Street loves Satya Nadella Verizon: Data center sale going nicely. Yahoo! bid? Not so much File this: XtremIO to fling forth filer functionality http://www.ibm.com/support/knowledgecenter/SSLTBW_2.1.0/com.ibm.zos.v2r1.cs3cod0/ftp501-07.htm EMC Dell deal: They're loved up and living together, but whose house rules? Operating Systems Applications Developer Verity Stob Mesosphere half-year pledge: Fresh DC/OS open source baking Tesla's big news today: sudo killall -9 Autopilot Who killed Cyanogen? Red Hat eye from the Ubuntu guy: Fedora – how you doin'? Mobile Broadband Vodafone says it'll launch NB-IoT network in http://forums.theregister.co.uk/forum/containing/2091403 EU early next year Will rush for New Radio compromise 5G quality? Virgin Media boss warns Brexit could hamstring broadband investment Hard-up Brits 'should get subsidy for 10Mbps' DIY web site builder Weebly was secured feebly Three million debit cards at risk after hackers raid Indian payment systems US DNC hackers blew through SIX zero-days vulns last year alone Boffins exploit Intel CPU weakness to run rings around code defenses Data integrity and failover in the hybrid cloud Adding trendy tech SIEM to a hybrid computing setup Desktop budget wrangles: Whose device is it anyway? How does a hybrid infrastructure fit my accreditations? Continuous Lifecycle 2017: Meet the committee... Atlassian promises elastic pipelines and premium plan Red Hat tosses Ansible Galaxy into the open source gale Drop, no, wait, deploy Anchore: Security code plunges into containers Financial News Small Biz CIO Media Law Government Jobs Despite best efforts, fewer and fewer women are working in tech EU legal eagle: Euro court should review Intel's €1.6bn fine Britain's fight to get its F-35 aircraft carriers
ago What sort of clowns stored the credit card number in a cookie? Seriously? What a breathtakingly stupid show of total incompetence.Was considering switching my personal account to Santander, have been looking to move https://news.ycombinator.com/item?id=4654606 away from Natwest for a while now. Natwest are a dismal failure of a bank http://vutw9m7xk.spdns.org/iq-option-live-chat-help-natwest-109.php to the extent I'm always happy to go out my way and dissuade people from associating with them in any way. I'll be writing Santander off my list for sure now. How on earth can you trust them after seeing this?For a business who HAS to take security seriously, for a business with a LOT of resources, for a business who hold YOUR error 500 cash this is utterly pathetic and inexcusable on their part.Leaving them might be a good idea for your personal security, unfortunately the UK is a little short of good banks. Would love to see someone shake up banking like Stripe has shaken up online payments. nessus42 1466 days ago Maybe I'm an ignoramus, but what's wrong with storing your credit card number in a cookie, as long as it's encrypted? This is how session management is typically done, 500 internal server right? Your session information is stored encrypted in a cookie so that on subsequent page requests, the server still knows who you are, but the session information is encrypted and decrypted on the server, so that the client can't forge the session information.If this technique is good enough to make sure that you still are who you said you were when you logged in, why is this not good enough for storing other sensitive information? And if it's not good enough for session management, then you're in deep trouble anyway, since someone else can now log in as you and funnel all your money into their Swiss bank account.Edit: As it turns out, it seems that most cookie-based session data is only stored cryptographically signed, rather than encrypted. The reason for this seems to be that HMAC signing is up to 4X faster than encrypting with Blowfish. Leon 1466 days ago The level of 'good enough' security for banking is higher than general web browsing. Even though a user input for their CC number would be encrypted in transmission, that encrypted value is not stored for a long period of time. A cookie, even if encrypted, would allow for a greater ease of access, in general, so now it may be possible for a malicious user who is targeting the site to possibly gain many encrypted values - which depending on the enc
The DNS server returned: Name Error: The domain name does not exist. This means that the cache was not able to resolve the hostname presented in the URL. Check if the address is correct. Your cache administrator is webmaster. Generated Fri, 21 Oct 2016 00:56:14 GMT by s_wx1085 (squid/3.5.20)