Sunday, December 12, 2010

Locking Down the Browser

One of the weakest links in your security defense is your browser; it is one of the most prevalent means for spyware and adware to be installed.

As businesses move from risky paper check payments to a safer means of electronic payments, the online banking systems that financial transactions are made through have become an attractive fraud target. Although businesses are using payment fraud control devices such as ACH Positive Pay and ACH Debit Filter, they only mitigate fraud after it occurs.

For both banks and enterprises the customer is the endpoint. Banks deliver services to business customers through the browser but do not usually have any control of the business's computing environment. Small businesses do not necessarily have the experience or resources to combat fraud, which makes them especially vulnerable to attack, and they are still legally responsible for their banking transaction environment. 

There are numerous reasons why enterprises should increase their security investment but one of the weakest links in any security defense is the browser; it is one of the most prevalent means for spyware and adware to be installed. Trojans and other malware like man-in-the-browser attacks that are difficult to detect, hijack the transaction inside of a browser session, and attack the application and database on the server from there.

Of course you have to make sure your computer is up-to-date with anti-virus and anti-malware software, firewalls, latest security updates, and the latest browser versions to try to block intruders. The only problem is that the latest versions and updates only come out after the latest malware and virus has been detected. Your computer could already be infected by the time the updates come out.

The best way to ensure secure financial transactions is through a secure browser. SafeCentral’s WebProtection prevents funds transfer fraud even if the user’s machine is infected with malware. WebProtection provides data loss prevention (DLP) that combines impenetrable endpoint protection with secure DNS to ensure that endpoint data cannot be stolen or re-directed. Unlike other tools, WebProtection goes down deep into the DNA of the Windows operating system and is able to control all processes during a secured transaction.

Many commercial banks and enterprises have already adapted to this software as part of their main fraud security measures, many of them requiring their customers, clients, and employees to use the software for all online transactions.

No comments:

Post a Comment