<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Financial Privacy Blog</title>
	<atom:link href="http://akacard.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://akacard.com/blog</link>
	<description>One source for financial privacy news, updates and tips</description>
	<pubDate>Fri, 06 Jun 2008 16:18:04 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5</generator>
	<language>en</language>
			<item>
		<title>Now You Have To Worry About Telescopes?</title>
		<link>http://akacard.com/blog/2008/05/19/now-you-have-to-worry-about-telescopes/</link>
		<comments>http://akacard.com/blog/2008/05/19/now-you-have-to-worry-about-telescopes/#comments</comments>
		<pubDate>Mon, 19 May 2008 14:00:03 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Computer Security]]></category>

		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=10</guid>
		<description><![CDATA[Yahoo! - May 19, 2008
This Yahoo! article says hackers could use telescopes to view tiny reflections in glasses, teapots and the human eye and capture valuable screen information. Some researchers have found ways to correlate visual keystrokes to data. This sophisticated interception research is called side-channel research. Do we all need privacy shields on our [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Yahoo! - May 19, 2008</strong></p>
<p>This <a title=" I Spy Your PC: Researchers Find New Ways to Steal Data" href="http://news.yahoo.com/s/pcworld/20080519/tc_pcworld/146047" target="_blank">Yahoo! article</a> says hackers could use telescopes to view tiny reflections in glasses, teapots and the human eye and capture valuable screen information. Some researchers have found ways to correlate visual keystrokes to data. This sophisticated interception research is called side-channel research. Do we all need privacy shields on our computer screens? And, then type in the dark? Crazy.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/05/19/now-you-have-to-worry-about-telescopes/feed/</wfw:commentRss>
		</item>
		<item>
		<title>How Easy Is It To Spy On Your Friends Online?</title>
		<link>http://akacard.com/blog/2008/05/13/how-easy-is-it-to-spy-on-your-friends-online/</link>
		<comments>http://akacard.com/blog/2008/05/13/how-easy-is-it-to-spy-on-your-friends-online/#comments</comments>
		<pubDate>Tue, 13 May 2008 14:00:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web Privacy]]></category>

		<category><![CDATA[Personal Information]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=8</guid>
		<description><![CDATA[WSJ - May 13, 2008 - D1
It&#8217;s easier than you might think. Googling someone is so 2007. These days publicly available information is free and at your fingertips. You may want to check out these services to see what dirt you can dig up on yourself before someone else finds it.

Zabasearch.com - Provides criminal history [...]]]></description>
			<content:encoded><![CDATA[<p><strong>WSJ - May 13, 2008 - D1</strong></p>
<p>It&#8217;s easier than you might think. Googling someone is so 2007. These days publicly available information is free and at your fingertips. You may want to check out these services to see what dirt you can dig up on yourself before someone else finds it.</p>
<ul>
<li style="text-align: left;"><a title="Zabasearch.com" href="http://zabasearch.com/" target="_blank">Zabasearch.com</a> - Provides criminal history and birth dates</li>
<li style="text-align: left;"><a title="Spock.com" href="http://www.spock.com/" target="_blank">Spock.com</a> and <a title="Wink.com" href="http://wink.com/" target="_blank">Wink.com</a> - Offers &#8220;people&#8221; search engines that find personal web pages, such as social networking profiles, buried in the web</li>
<li style="text-align: left;"><a title="Spokeo.com" href="http://www.spokeo.com/" target="_blank">Spokeo.com</a> - Displays activity of friends on other web sites (including online shopping lists)</li>
<li style="text-align: left;"><a title="Zillow.com" href="http://www.zillow.com/" target="_blank">Zillow.com</a> - Estimates the value of your home</li>
<li style="text-align: left;"><a title="Fundrace.huffingtonpost.com" href="http://fundrace.huffingtonpost.com/" target="_blank">Fundrace.huffingtonpost.com</a> - Displays individual campaign donations</li>
<li style="text-align: left;"><a title="Jigsaw.com" href="http://www.jigsaw.com/" target="_blank">Jigsaw.com</a> - Shares business card data among users</li>
</ul>
<p>Many other online sites make some quasi-private information public by default. The list includes your Amazon.com wish list, Pandora.com personal music stations, Flickr.com photos, del.icio.us saved web site links and Google&#8217;s street view of your home. Many people opt-in to provide even more information to the public.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/05/13/how-easy-is-it-to-spy-on-your-friends-online/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Privacy and Internet Cookies</title>
		<link>http://akacard.com/blog/2008/05/05/privacy-and-internet-cookies/</link>
		<comments>http://akacard.com/blog/2008/05/05/privacy-and-internet-cookies/#comments</comments>
		<pubDate>Mon, 05 May 2008 14:00:42 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web Privacy]]></category>

		<category><![CDATA[Anonymity]]></category>

		<category><![CDATA[Privacy]]></category>

		<category><![CDATA[Tracking Cookies]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=6</guid>
		<description><![CDATA[WSJ - May 5, 2008 - A13
The WSJ again raises good questions about how marketers track online behavior via web cookies. According to the author, the key questions remain:

How are personal data used?
Are our names, addresses, and financial and health records really secret?
Is anonymity permanent?

Some advocacy groups contend we should allow surfers to &#8220;opt out&#8221; [...]]]></description>
			<content:encoded><![CDATA[<p><strong>WSJ - May 5, 2008 - A13</strong></p>
<p>The WSJ again raises good questions about how marketers track online behavior via web cookies. According to the author, the key questions remain:</p>
<ul>
<li>How are personal data used?</li>
<li>Are our names, addresses, and financial and health records really secret?</li>
<li>Is anonymity permanent?</li>
</ul>
<p>Some advocacy groups contend we should allow surfers to &#8220;opt out&#8221; of cookie tracking just like we can now opt out of direct marketing phone calls with the <a title="No Call List" href="https://www.donotcall.gov/" target="_blank">No Call List</a>. Still, the $20 Billion spent on web advertising is the engine that drives the &#8220;free&#8221; Internet. How many of us would willingly trade free use for enhanced privacy? No more free email or free web searching?</p>
<p>Is better disclosure the answer? One WSJ site offers its own model of <a title="Tracking Cookies" href="http://allthingsd.com/trackingcookies/" target="_blank">full tracking cookie disclosure</a>. Clearly, the tension between usability and privacy continues to frustrate web users and marketers alike.</p>
<p>Once again, the best interim answer seems to be to randomize your critical private financial data and accept the loss of complete anonymity.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/05/05/privacy-and-internet-cookies/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Credit Card Security Not Up To Snuff</title>
		<link>http://akacard.com/blog/2008/04/29/credit-card-security-not-up-to-snuff/</link>
		<comments>http://akacard.com/blog/2008/04/29/credit-card-security-not-up-to-snuff/#comments</comments>
		<pubDate>Tue, 29 Apr 2008 14:00:39 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Payment Card Security]]></category>

		<category><![CDATA[Credit Card]]></category>

		<category><![CDATA[Debit Card]]></category>

		<category><![CDATA[Payment Card]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=9</guid>
		<description><![CDATA[WSJ - April 29, 2008 - A9
Data breaches occur even at companies that fully comply with the Payment Card Industry Security Standards Council, known as PCI. Among other things, these standards require retailers to encrypt or mask customer data, regularly update antivirus software, restrict access to card data to only certain authorized personnel and protect [...]]]></description>
			<content:encoded><![CDATA[<p><strong>WSJ - April 29, 2008 - A9</strong></p>
<p>Data breaches occur even at companies that fully comply with the Payment Card Industry Security Standards Council, known as PCI. Among other things, these standards require retailers to encrypt or mask customer data, regularly update antivirus software, restrict access to card data to only certain authorized personnel and protect stored information with firewalls. Clearly, even when retailers do everything they are supposed to do, customer financial information can be lost or stolen. Some recent examples include:</p>
<ul>
<li>Hannaford Bros. (New England supermarket chain) - Data for 4.2 million credit card holders may have been stolen</li>
<li>Okemo Mountain Resort (Vermont ski resort) - Lost card data for 50,000 customers</li>
</ul>
<p>Security experts say that many of these attacks could have been prevented by installing encryption at the cash register (for less than $100 per terminal), but this is not required under PCI. Still that cost adds up and may be prohibitive for smaller merchants. Even if these point-of-sale sites are shored up, thieves will still attack merchants and merchant processors because the data  stolen is so valuable.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/04/29/credit-card-security-not-up-to-snuff/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Presidential Candidates&#8217; Privacy Invaded, And Not By The Media</title>
		<link>http://akacard.com/blog/2008/03/21/presidential-candidates-privacy/</link>
		<comments>http://akacard.com/blog/2008/03/21/presidential-candidates-privacy/#comments</comments>
		<pubDate>Fri, 21 Mar 2008 14:00:04 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web Privacy]]></category>

		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=7</guid>
		<description><![CDATA[National Public Radio - March 21, 2008
State Department contractors were caught accessing data on presidential hopefuls Barack Obama, Hillary Clinton and John McCain. Luckily, software that monitors high-profile individuals caught the snooping, but, of course, average Americans don&#8217;t enjoy the same enhanced protections.
Ira Flatow used this incident to launch an NPR Science Friday Online Privacy [...]]]></description>
			<content:encoded><![CDATA[<p><strong>National Public Radio - March 21, 2008</strong></p>
<p>State Department contractors were caught accessing data on presidential hopefuls Barack Obama, Hillary Clinton and John McCain. Luckily, software that monitors high-profile individuals caught the snooping, but, of course, average Americans don&#8217;t enjoy the same enhanced protections.</p>
<p>Ira Flatow used this incident to launch an <a title="NPR Science Friday Online Privacy" href="http://www.sciencefriday.com/program/archives/200803213" target="_blank">NPR Science Friday Online Privacy</a> discussion. A couple of highlights:</p>
<ul>
<li>Users &#8220;pay&#8221; for Internet sites with personal information, but it is not clear the value-received matches the privacy cost. Facebook provides a great example of users freely sharing information with friends and not truly understanding the cost of the privacy loss until much later (e.g., when your party photos become public and threaten your <a title="Miss America Pageant" href="http://www.msnbc.msn.com/id/19674044/" target="_blank">Miss America pageant</a> hopes).</li>
<li>The social contract between site operators and users is critical to maintaining any web privacy (e.g., Google&#8217;s Gmail will use personal information in your email inbox to place targeted advertising, but not re-sell that personal information to third parties).</li>
<li> Online privacy could take a significant step forward if web site operators changed from a opt-out to an opt-in policy for using information collected from site users.</li>
</ul>
<p>Whether information is financial or not, if seems clear that users need to act more proactively to shield information from misuse rather than relying on the social contract and technologies to protect data already collected.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/03/21/presidential-candidates-privacy/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Mathematicians Are Too Darn Smart</title>
		<link>http://akacard.com/blog/2008/01/11/mathematicians-are-too-darn-smart/</link>
		<comments>http://akacard.com/blog/2008/01/11/mathematicians-are-too-darn-smart/#comments</comments>
		<pubDate>Fri, 11 Jan 2008 14:00:24 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Computer Security]]></category>

		<category><![CDATA[Encryption]]></category>

		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=4</guid>
		<description><![CDATA[Discover Magazine - January 2008 - P. 45
Discover Magazine posted a short article in their January 2008 issue explaining how computer scientists in Switzerland (it just had to be the Swiss - they of ultimate banking privacy and security) are getting closer to breaking the 1,024 bit encryption coding used to secure Internet messages.
I&#8217;m no [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Discover Magazine - January 2008 - P. 45</strong></p>
<p><a title="Discover Magazine" href="http://discovermagazine.com/" target="_blank">Discover Magazine</a> posted a short article in their January 2008 issue explaining how computer scientists in Switzerland (it just had to be the Swiss - they of ultimate banking privacy and security) are getting closer to breaking the 1,024 bit encryption coding used to secure Internet messages.</p>
<p>I&#8217;m no mathematician, but apparently hackers could use this new factorization technique, along with multiple computer load distribution, to more quickly crack a random 1,024 bit number.</p>
<p>We&#8217;re in no imminent danger of unsecured Internet transactions, but this just highlights to need to move away from technical protocols to more basic data devaluation, i.e. make the data worthless so no one has any incentive to steal it.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/01/11/mathematicians-are-too-darn-smart/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Be Careful With Web Pay Alternatives</title>
		<link>http://akacard.com/blog/2008/01/10/be-careful-with-web-pay-alternatives/</link>
		<comments>http://akacard.com/blog/2008/01/10/be-careful-with-web-pay-alternatives/#comments</comments>
		<pubDate>Thu, 10 Jan 2008 14:00:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web Shopping]]></category>

		<category><![CDATA[Credit]]></category>

		<category><![CDATA[Fraud]]></category>

		<category><![CDATA[Web Payment Systems]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=5</guid>
		<description><![CDATA[WSJ - January 10, 2008 - D5
Alternative web payment systems (PayPal, Bill Me Later, eBillMe, etc.) can be useful, but there are some pitfalls:

Fraud protection on unauthorized purchases with credit cards is mandated by federal law. Fraud protection with alternative web payment systems is voluntary and limited.
Services that extend a new line of credit (and [...]]]></description>
			<content:encoded><![CDATA[<p><strong>WSJ - January 10, 2008 - D5</strong></p>
<p>Alternative web payment systems (PayPal, Bill Me Later, eBillMe, etc.) can be useful, but there are some pitfalls:</p>
<ul>
<li>Fraud protection on unauthorized purchases with credit cards is mandated by federal law. Fraud protection with alternative web payment systems <em>is voluntary</em> <em>and limited</em>.</li>
<li>Services that extend a new line of credit (and then max out that line) can cause a precipitous drop - up to 100 points - in your credit score.</li>
<li>Interest rates can be much higher on pay later services, ~20% annual rate versus ~14% for the average credit card.</li>
</ul>
<p>Buyer - and payer - beware.</p>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2008/01/10/be-careful-with-web-pay-alternatives/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Web Shopping: Good, Bad and Ugly</title>
		<link>http://akacard.com/blog/2007/12/05/web-shopping-good-bad-ugly/</link>
		<comments>http://akacard.com/blog/2007/12/05/web-shopping-good-bad-ugly/#comments</comments>
		<pubDate>Wed, 05 Dec 2007 14:00:16 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[Web Shopping]]></category>

		<category><![CDATA[Fraud]]></category>

		<category><![CDATA[Identity Theft]]></category>

		<category><![CDATA[Privacy]]></category>

		<guid isPermaLink="false">http://akacard.com/blog/?p=3</guid>
		<description><![CDATA[WSJ - December 5, 2007 - D1, D8
Several WSJ articles cover the good, the bad and the ugly of online holiday shopping.
The Good
Online payment systems are rolling out incentives to capture part of the estimated $28 Billion in online shopping during the 2007 holiday season. These services are becoming widely available so some of these [...]]]></description>
			<content:encoded><![CDATA[<p><strong>WSJ - December 5, 2007 - D1, D8</strong></p>
<p>Several WSJ articles cover the good, the bad and the ugly of online holiday shopping.</p>
<p><strong>The Good</strong></p>
<p>Online payment systems are rolling out incentives to capture part of the estimated <a title="$28 Billion in online shopping" href="http://www.comscore.com/press/release.asp?press=1987" target="_blank">$28 Billion in online shopping</a> during the 2007 holiday season. These services are becoming widely available so some of these offers could really translate into big savings.</p>
<ul>
<li>PayPal partners with retailers such as Barnes &amp; Noble, eToys, and Blue Nile to offer up to a 20% credit on purchases</li>
<li>Bill Me Later subsidizes shipping costs (always a customer pleaser) and defers billing at retailers like eToys Direct and KB Toys</li>
<li>Even Google Checkout has gotten into the act with free shipping on orders of $50 or more with some merchant partners and is offering United or Continental Airlines miles for purchases</li>
</ul>
<p><strong>The Bad</strong></p>
<p>Online shopping increases during the holidays and that provides even more opportunities for criminals to steal data and defraud consumers. With <a title="$198.4 Million in fraud in 2006" href="http://www.ic3.gov/media/annualreports.aspx" target="_blank">$198.4 Million in fraud losses in 2006</a>, it&#8217;s clear that cyber criminals aren&#8217;t going away.</p>
<p><strong>The Ugly</strong></p>
<p>It&#8217;s 2007 (more than a decade since the rise of e-commerce) and still no <em>widely available</em> online payment system offers real protection against fraud, identity theft and privacy invasion.</p>
<ul>
<li>PayPal offers some anonymity when buying online (which is a good step forward), but they have been notoriously lax in protecting against fraud and truly serving customer interests.  (Just Google &#8220;PayPal fraud&#8221; to get up to speed on some of the problems.)</li>
<li>Bill Me Later simply changes the information that&#8217;s at risk. Rather than exposing your bank card number, address and name, you share the last four digits of your SSN, your DOB and your name. Here we see convenience trump security.</li>
<li>Regular Bank Payment Cards (debit and credit cards) provide good fraud protection ($50 max liability on credit cards and good, but not as comprehensive fraud liability protection, on debit cards), but these cards clearly don&#8217;t protect your privacy and offer no real safety from ID theft.</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://akacard.com/blog/2007/12/05/web-shopping-good-bad-ugly/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
