All the latest UK technology news, reviews and analysis

Password reuse threatens online banking security

by Iain Thomson

More from this author

03 Feb 2010

Comments: 2

  • Tweet this
Password screen
The use of the same password for multiple sites raises serious security risks

A report into the security of internet banking systems has found that one of the biggest problems is the reuse of log-in passwords on multiple sites.

Online security firm Trusteer monitored over four million computers for a year, and found that 73 per cent of internet banking customers used the same password for their online banking services as they did for other, less secure, sites.

"Using stolen credentials remains the easiest way for criminals to bypass the security measures implemented by banks to protect their online applications, so we wanted to see how often users repurpose their financial service user names and passwords," said Amit Klein, chief technical officer at Trusteer, and head of the company's research organisation.

"Our findings were very surprising, and reveal that consumers are not aware, or are choosing to ignore, the security implications of reusing their banking credentials on multiple web sites."

The Reused Login Credentials report (PDF) found that part of the blame lies with banking web sites that allow users to choose their own IDs, as almost two thirds of customers use the same ID for other sites. This figure falls to less than half when users are allocated an ID by the bank.

The research also found that nearly half of banking customers use their ID and password for a non-financial web site.

The use of the same password for multiple sites raises serious security risks. If a hacker can get one password from a less secure web site by a 'brute force' dictionary attack, for example, there is a good chance that it can be used on other sites.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Project Manager (BI)

Project Manager (BI) 6 Months Contract – to...

Desktop Support Manager

Desktop Support Manager 3 month contract - to start...

Programme Manager / 45k ++ Benefits / London

/ Programme Manager / 45k / Significant benefits / London...

Automation Test Manager Selenium London 75k

Automation Test Manager Selenium London 75k Automation...

To send to more than one email address, simply separate each address with a comma.