Re: Re: pen testing https portal?

From: mismail@postmaster.co.uk
Date: Sat Sep 09 2006 - 15:35:47 EDT


('binary' encoding is not supported, stored as-is) no basically 1234 is PIN they refer to, so when they click on the generate pin button they find the number under 1234 and enter that as there pin, the number they enter will always change, so if some if walking past and see's your logon details, they cant logon, cos its a new number you'd have type in again!

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php
------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:56:55 EDT