CFA/Security-Research: Difference between revisions

Line 51: Line 51:
* [http://safecache.com/ SafeCache]
* [http://safecache.com/ SafeCache]
* [http://www.safehistory.com/ SafeHistory]
* [http://www.safehistory.com/ SafeHistory]
* [https://addons.mozilla.org/en-US/firefox/addon/315 View Cookies]


=== Internet Explorer ===
=== Internet Explorer ===
Line 64: Line 65:


== Meeting Takeaways ==
== Meeting Takeaways ==
* Malware Prevention
** Haute Secure provides good information and a good user experience
*** Blocks pages that are malicious
*** Blocks specific malicious content on non-malicious pages, and issues a non-obtrusive warning
*** Work with Haute Secure on Firefox extension (currently only for IE)
** StopBadware.org
*** Doesn't help character encoding and flash cases
*** Do we have numbers on the effectiveness of StopBadware.org?
* Anti-Phishing
** Default URI blacklist is over 70% effective
** Checking vs. google online yields only slightly better results
* Passwords
** Use SRP (Secure Remote Password) protocol to integrate secure password authentication into applications
** Improve password security by moving away from web-forms
*** Sxipper creates strong passwords when registering and encrypts stored data
*** Sxipper also saves users time with seamless integration and single click logins
455

edits