Thursday, 19 April 2007

Phishing attack circumvents two-factor authentication

This is the first time I've seen a real, live, successful phishing attack targeted at an institution with two-factor authentication. The attack is a "man in the middle" attack, of course, and the institution in question is the Dutch bank ABN Amro.

