- - WebmasterWorld
- -- Webmaster General
- ---- DNS Resolution Path Corruption Helps Phishing Scams
mcavic - 5:57 pm on Feb 13, 2008 (gmt 0)
|there is a possible (and definitive) solution to issue 1 - use a boot CD with browser for all financial actions |
No no no.
The correct solution is to (a) have the browser verify the IP address against the SSL certificate, as swa66 said.
And (b) get the operating system fixed so that the DNS server can't be maliciously changed.
Thread source: http://www.webmasterworld.com/webmaster/3573859.htm
Brought to you by WebmasterWorld: http://www.webmasterworld.com