Penetration Testing mailing list archives

Re: Re: pen testing https portal?


From: mismail () postmaster co uk
Date: 9 Sep 2006 19:35:47 -0000

no basically 1234 is PIN they refer to, so when they click on the generate pin button they find the number under 1234 
and enter that as there pin, the number they enter will always change, so if some if walking past and see's your logon 
details, they cant logon, cos its a new number you'd have type in again!

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php
------------------------------------------------------------------------


Current thread: