[cap-talk] Update on petname related anti-phishing work at the W3C
Pierre THIERRY
nowhere.man at levallois.eu.org
Thu Jun 28 20:51:57 EDT 2007
Scribit Tyler Close dies 28/06/2007 hora 14:09:
> Given that a shoulder surfer can likely also see your fingers if he
> can see the bottom of your screen, I don't know how successful this
> attempt will be.
In fact, you may need quite some training to be able to grasp someone's
password from his typing, depending on his speed. You can expect it to
be far harder than taking a look at a fixed position on the screen, so
that's definitely worth a protection, IMO.
At least, masking data typed whenever it could be a password should be
the default behaviour.
Conservatively,
Pierre
--
nowhere.man at levallois.eu.org
OpenPGP 0xD9D50D8A
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://www.eros-os.org/pipermail/cap-talk/attachments/20070629/b21e548f/attachment.bin
More information about the cap-talk
mailing list