Accurate, Focused Research on Law, Technology and Knowledge Discovery Since 2002

Category Archives: ID Theft

New Internet Security Report Highlights Vulernability of HTTPS Websites

Computer World: “Ninety percent of the Internet’s top 200,000 HTTPS-enabled websites are vulnerable to known types of SSL (Secure Sockets Layer) attack, according to a report released Thursday by the Trustworthy Internet Movement (TIM), a nonprofit organization dedicated to solving Internet security, privacy and reliability problems. The report is based on data from a new… Continue Reading

UK Study – ICO report finds many people becoming a 'soft touch' for online fraudsters

News release: “The Information Commissioner’s Office (ICO) is urging consumers to take better care of their data, following an investigation into the trade in used hard drives. The ICO has published new guidance to help individuals securely delete personal information from their old devices. An investigation by the ICO found that one in ten second-hand… Continue Reading

CFA Report: How Identity Theft Services Measure Up to Best Practices

“The Consumer Federation of America (CFA) released Best Practices for Identity Theft Services: How Are Services Measuring Up?, which analyzes how well identity theft services are providing key information to prospective customers. The study is based on CFA’s Best Practices for Identity Theft Services, voluntary guidelines that CFA developed with the help of identity theft… Continue Reading

FTC Chairman Releases 2012 Annual Highlights

“Federal Trade Commission Chairman Jon Leibowitz released the agency’s 2012 Annual Highlights today at the spring meeting of the American Bar Association’s Section of Antitrust Law in Washington, DC, recognizing the agency’s continued efforts to protect consumers and promote competition. The Highlights, published in an online format for the first time this year, focus on… Continue Reading

DARPA's Active Authentication Program – No More Passwords

Active Authentication: “The current standard method for validating a user’s identity for authentication on an information system requires humans to do something that is inherently unnatural: create, remember, and manage long, complex passwords. Moreover, as long as the session remains active, typical systems incorporate no mechanisms to verify that the user originally authenticated is the… Continue Reading

SEC Proposes Rules To Help Prevent And Detect Identity Theft

News release: “The Securities and Exchange Commission today announced a rule proposal to help protect investors from identity theft by ensuring that broker-dealers, mutual funds, and other SEC-regulated entities create programs to detect and respond appropriately to red flags. The SEC issued the proposal jointly with the Commodity Futures Trading Commission (CFTC). Section 1088 of… Continue Reading

FTC Issues Report on the Experiences of Victims Recovering from Identity Theft

News release: “The Federal Trade Commission issued a staff report, Using FACTA Remedies: An FTC Staff Report on a Survey of Experience of Identity Theft Victims, summarizing the results of a survey of identity theft victims who were asked to describe their experiences dealing with consumer reporting agencies and, more generally, exercising their rights under… Continue Reading

New 'HTTPS Everywhere' Version Warns Users About Web Security Holes

News release: “The Electronic Frontier Foundation (EFF) launched the 2.0 version of HTTPS Everywhere for the Firefox browser today, including an important new update that warns users about web security holes. The “Decentralized SSL Observatory” is an optional feature that detects encryption weaknesses and notifies users when they are visiting a website with a security… Continue Reading

Domain-based Message Authentication, Reporting & Conformance

“DMARC, which stands for “Domain-based Message Authentication, Reporting & Conformance”, is a technical specification created by a group of organizations that want to help reduce the potential for email-based abuse by solving a couple of long-standing operational, deployment, and reporting issues related to email authentication protocols. DMARC standardizes how email receivers perform email authentication using… Continue Reading

FTC Warns That Rapid Expansion of Internet Domain Name System Could Leave Consumers More Vulnerable to Online Fraud

News release: “The Federal Trade Commission today sent a letter to the Internet Corporation for Assigned Names and Numbers (ICANN), the organization that oversees Internet domain names, expressing concern that the organization’s plan to dramatically expand the domain name system could leave consumers more vulnerable to online fraud and undermine law enforcers’ ability to track… Continue Reading