<?xml version="1.0"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title>Engadget - Comments for IBM develops ZTIC USB stick for secure online banking</title>
<link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link>
<description>Engadget Comments for IBM develops ZTIC USB stick for secure online banking</description>
<image>
<url>http://www.engadget.com/media/feedlogo.gif</url>
<title>Engadget</title>
<link>http://www.engadget.com</link>
</image>
<language>en-us</language>
<copyright>Copyright 2012 Weblogs, Inc. The contents of this feed are available for non-commercial use only.</copyright>
<generator>Blogsmith http://www.blogsmith.com/</generator><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[I read about this just yesterday.  They even disclaimer that it won't stop a man in the middle attack, just show you any injected info.  By that point however, the mitm would already have your pass and login, so it might be a moot point.  That said, this is still a massive step forward in transaction security, if only because it makes it easy to be more secure!]]></description><dc:creator><![CDATA[Xenoterranos]]></dc:creator><pubDate>Mar 4th 2009 11:40AM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[There is NO device that can stop a man in the middle attack. <br>]]></description><dc:creator><![CDATA[Flashpoint]]></dc:creator><pubDate>Mar 4th 2009 12:10PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[@ Flashpoint<br><br>How about a gun?  That's certainly a device and I'm pretty sure someone would stop jacking your bank account if you pointed it at them.<br><br>Thus, your statement is FALSE.]]></description><dc:creator><![CDATA[absinthe party]]></dc:creator><pubDate>Mar 4th 2009 12:41PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[“one time pad” encryption would make man in the middle attack imposable. Both the password and data would have to use this method.<br><br>With the size of USB key’s and HD’s I don’t see why this method is not used. Seeing how bank transactions are under 10KB in size and larger USB keys in the 16GB range... that’s 1.6 million transactions. <br>]]></description><dc:creator><![CDATA[Gordon N.]]></dc:creator><pubDate>Mar 4th 2009 4:23PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[@Flashpoint: Why not? I'm presuming this device is preprogrammed with the bank's SSL key/cert. So if anything intercepts a request from this device, they shouldn't be able to respond in a manner that would match the certificate.]]></description><dc:creator><![CDATA[sam]]></dc:creator><pubDate>Mar 4th 2009 6:18PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[The police could stop a man in the middle attack. ]]></description><dc:creator><![CDATA[IIIIIIIIIIIIIIIIIIIIIIIIIIIIIII (BarCODE)]]></dc:creator><pubDate>Mar 6th 2009 12:44AM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[My PC has a big panic failsafe too. Its called ripping out the power cord. <br><br>Hopefully there wont be tanks of liquid nitrogen around when the emergency happens, but I'm invincible so it won't matter. ]]></description><dc:creator><![CDATA[Sisyphus]]></dc:creator><pubDate>Mar 4th 2009 11:41AM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[What would happen if there was liquid nitrogen about...<br><br>You would be chilly?<br><br>Perhaps you mean nitroglycerin?]]></description><dc:creator><![CDATA[Oli D]]></dc:creator><pubDate>Mar 4th 2009 12:12PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[@Oli D<br>...The cradle collapses, crushing Trevelyan and rupturing liquid nitrogen tanks that freeze Grishenko...<br><br><a href="http://en.wikipedia.org/wiki/Goldeneye#Plot" rel="nofollow">http://en.wikipedia.org/wiki/Goldeneye#Plot</a>]]></description><dc:creator><![CDATA[Will]]></dc:creator><pubDate>Mar 4th 2009 1:24PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[I had forgotten all about goldeneye...]]></description><dc:creator><![CDATA[Oli D]]></dc:creator><pubDate>Mar 4th 2009 1:35PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[Freak dude, this is awesome. ]]></description><dc:creator><![CDATA[Testies, Testies, 1, 2... 3?]]></dc:creator><pubDate>Mar 4th 2009 11:53AM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[tight!]]></description><dc:creator><![CDATA[Shank]]></dc:creator><pubDate>Mar 4th 2009 11:56AM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[You'd think they would have but the yes/no buttons further apart...hate to accidentally hit the yes button on the $20,000 transfer....]]></description><dc:creator><![CDATA[eclipsed450]]></dc:creator><pubDate>Mar 4th 2009 12:02PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[More bankers should have these for transfering their bailout money. <br><br>Make it more secure.]]></description><dc:creator><![CDATA[Flashpoint]]></dc:creator><pubDate>Mar 4th 2009 12:28PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[no No NO! My money in the Cayman Islands just dissappeared!]]></description><dc:creator><![CDATA[Patrick]]></dc:creator><pubDate>Mar 4th 2009 12:58PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[And still we have a 4 numeric keys password (aka pin)  for credit card.<br><br><br>]]></description><dc:creator><![CDATA[Magallanes]]></dc:creator><pubDate>Mar 4th 2009 1:03PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[...not even. In Canada, most credit cards are just swipe 'n sign. And you rarely find a cashier who will actually look at your signature.]]></description><dc:creator><![CDATA[Mike P.]]></dc:creator><pubDate>Mar 4th 2009 1:31PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[This is a cool idea but seems a bit pointless. Now, what if you made a gadget like this that hung off a phone (better still build it into the phone) and every time you made a credit card transaction [or someone else does with your card], it gets contacted independently [and instantly] by the credit card provider, shows you the details and a yes/no right there? If your phone's off, they return a 'not yet authorised but try again tomorrow' status. Credit card fraud = dead. (Ok, unless somebody physically steals both your card and your phone...)<br><br>then once there's a standard device/protocol like that it can be used by all sorts of institutions including banks to confirm transactions.<br><br>i have two bank accounts, one of them's threatening to send me some kind of gadget (not like this one just a basic secure-id thing I assume). probably later the other one will too. then maybe my credit card will eventually get one... that's just crazy, they need to come up with a standard for this stuff.]]></description><dc:creator><![CDATA[sam]]></dc:creator><pubDate>Mar 4th 2009 6:28PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[I prefer SMS codes to secure my transactions - <a href="http://www.mbank.pl/en/guide/safety/sms_codes.html" rel="nofollow">http://www.mbank.pl/en/guide/safety/sms_codes.html</a>]]></description><dc:creator><![CDATA[Andrzej]]></dc:creator><pubDate>Mar 4th 2009 7:00PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[sending sms codes in the open without standard encryption tools isn't exactly a very convincing case.  Sadly a few banks have started using "sms codes" without success.  OTP solutions are simpler and better.  PKI solutions are a highly recommended. ]]></description><dc:creator><![CDATA[gordon]]></dc:creator><pubDate>Mar 4th 2009 9:20PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[Not sure I follow this *stick* (ZTIC in german) device, if it has a secure dedicated line to the bank server how come is transaction was still changed CHF 20,000.00 by an hacker??? ]]></description><dc:creator><![CDATA[Valter]]></dc:creator><pubDate>Mar 4th 2009 8:08PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[Because he didn't enter the transaction details on the ztic, but on his (compromised) computer. But with the ztic he can review and in case of fraud cancel the transaction. :)<br><br>jojo]]></description><dc:creator><![CDATA[Runo]]></dc:creator><pubDate>Mar 4th 2009 8:48PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[If IBM markets a mp3 this cute, I'll buy one.]]></description><dc:creator><![CDATA[hugo]]></dc:creator><pubDate>Mar 4th 2009 11:35PM</pubDate></item><item><title><![CDATA[Comments on IBM develops ZTIC USB stick for secure online banking]]></title><link>http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</link><guid isPermaLink="true">http://www.engadget.com/2009/03/04/ibm-develops-ztic-usb-stick-for-secure-online-banking/</guid><description><![CDATA[This has existed under the name of HBCI in Germany for at least 10 years; using smartcards as security tokens. Strange that this should be marketed as an innovation.<br><br>HBCI has different security classes, the one with the LCD display to confirm the transaction is "class 3". Unfortunately class 3 readers are very expensive (about 100 €), so most people use either class 1 (rather insecure because the smartcard PIN is entered through the PC keyboard) or class 2 (PIN entry on card reader keypad but no LCD display).<br><br>In the end, the decisive question will be whether IBM will manage to make this product cheaper, that is 20 € max. Otherwise this product will fail as much as class 3 HBCI did.<br><br>Ah, and if they want a large, instant customer base in Germany they should make the device so that the existing HBCI cards can be inserted into it.]]></description><dc:creator><![CDATA[dfgdfgdfg]]></dc:creator><pubDate>Mar 5th 2009 7:55AM</pubDate></item></channel></rss>
