On the 15th, the Financial Services Agency began accepting public comments under the title "Publication of a partial revision (draft) of the "Comprehensive Supervision Guidelines for Financial Instruments Business Operators, etc." The deadline is 18:17 PM on Monday, August 00th (must arrive by this date). This case concerns the theft of customer information (login IDs, etc.) from phishing sites disguised as securities company websites...
Further display The Japanese Financial Services Agency amends supervisory guidelines. Phishing-resistant authentication methods will become mandatory. It is not biometric authentication as some media say, however! Public comments are open until August 8th.tag: Fishing
The threat of real-time phishing that cannot be prevented by one-time passwords - The true nature of phishing resistance using passkeys
In recent years, phishing attacks targeting financial institutions and other organizations have become more sophisticated, and a method called "real-time phishing" in particular has become a serious threat. This type of attack can even invalidate one-time passwords (OTPs), which have traditionally been considered effective in preventing phishing attacks.
Further display The threat of real-time phishing that cannot be prevented by one-time passwords - The true nature of phishing resistance using passkeys