<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for ScottFromSecurity.com</title>
	<atom:link href="http://scottfromsecurity.com/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>https://scottfromsecurity.com/blog</link>
	<description>The ROI of Info Sec is the absence of chaos, or in other words Boring is Beautiful</description>
	<lastBuildDate>Wed, 29 Feb 2012 03:21:27 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>Comment on Security I want around my online banking experience… by Scott Lockington</title>
		<link>https://scottfromsecurity.com/blog/2012/02/16/security-i-want-around-my-online-banking-experience/comment-page-1/#comment-114</link>
		<dc:creator>Scott Lockington</dc:creator>
		<pubDate>Wed, 29 Feb 2012 03:21:27 +0000</pubDate>
		<guid isPermaLink="false">http://scottfromsecurity.com/blog/?p=442#comment-114</guid>
		<description>Thanks Jack, 
  That&#039;s an excellent point. The average user certainly has a large part of the blame for the stolen money.  But with banks on the hook for some or all of it, I wonder how many dollars it will take for the banks to lose each year before their view of the risk/reward ratio will change enough for them to add in some basic good practice protections around the currently broken online banking experience.</description>
		<content:encoded><![CDATA[<p>Thanks Jack,<br />
  That&#8217;s an excellent point. The average user certainly has a large part of the blame for the stolen money.  But with banks on the hook for some or all of it, I wonder how many dollars it will take for the banks to lose each year before their view of the risk/reward ratio will change enough for them to add in some basic good practice protections around the currently broken online banking experience.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Security I want around my online banking experience… by JD</title>
		<link>https://scottfromsecurity.com/blog/2012/02/16/security-i-want-around-my-online-banking-experience/comment-page-1/#comment-113</link>
		<dc:creator>JD</dc:creator>
		<pubDate>Tue, 28 Feb 2012 16:58:30 +0000</pubDate>
		<guid isPermaLink="false">http://scottfromsecurity.com/blog/?p=442#comment-113</guid>
		<description>Scott,

Good stuff.  We all know we could go with further technical steps for the end-user (live CD, two-factor) but we have to be realistic with the technical level of the end-user.  Your summary of suggestions  could be implemented at a single point (bank) vs. having every end user try to improve their security posture on their end workstation, which is not realistic.</description>
		<content:encoded><![CDATA[<p>Scott,</p>
<p>Good stuff.  We all know we could go with further technical steps for the end-user (live CD, two-factor) but we have to be realistic with the technical level of the end-user.  Your summary of suggestions  could be implemented at a single point (bank) vs. having every end user try to improve their security posture on their end workstation, which is not realistic.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The startup that didn&#8217;t start&#8230; by Brian</title>
		<link>https://scottfromsecurity.com/blog/2012/01/01/the-startup-that-didnt-start/comment-page-1/#comment-108</link>
		<dc:creator>Brian</dc:creator>
		<pubDate>Tue, 31 Jan 2012 15:35:12 +0000</pubDate>
		<guid isPermaLink="false">http://scottfromsecurity.com/blog/?p=364#comment-108</guid>
		<description>looking good.</description>
		<content:encoded><![CDATA[<p>looking good.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

