利物浦大学特快申请
热点推荐
 ·2009年英国大学排名 ·格拉斯哥大学申请
 ·澳大利亚大学星级排名(澳洲教育科学培训局)
 ·加拿大大学排名(基础类、综合类和医博类)
首页  名校申请  大学排名  留学预科  申请指南  留学评估  海外院校  留学文书  雅思考试  签证指南  留学动态  大学网址  毕业证翻译  行前准备  体检参考  留学生活  归国
热点留学国家:澳大利亚 | 英国 | 美国 | 加拿大 | 爱尔兰 | 新西兰 | 韩国 | 德国 | 法国 | 荷兰 | 俄罗斯 | 乌克兰 | 意大利 | 丹麦 | 瑞典 | 新加坡 | 马来西亚 | 其它各国
  东西方留学网·提供最专业的留学申请服务 您现在的位置:东西方留学 > 雅思 > 雅思阅读 > 文章

阅读实战:Study Finds Web Antifraud Measure Ineffective


2007-4-2 11:56:40
谢菲尔德大学

Study Finds Web Antifraud Measure Ineffective

Published: February 5, 2007      New York Times

1. Internet security experts have long known that simple passwords do not fully defend online bank accounts from determined fraud artists. Now a study suggests that a popular secondary security measure provides little additional protection.

2.The study, produced jointly by researchers at Harvard and the Massachusetts Institute of Technology, looked at a technology called site-authentication images. In the system, currently used by financial institutions like Bank of America, ING Direct and Vanguard, online banking customers are asked to select an image, like a dog or chess piece, that they will see every time they log in to their account.

3.The idea is that if customers do not see their image, they could be at a fraudulent Web site, dummied up to look like their bank’s, and should not enter their passwords.

4.The Harvard and M.I.T. researchers tested that hypothesis. In October, they brought 67 Bank of America customers in the Boston area into a controlled environment and asked them to conduct routine online banking activities, like looking up account balances. But the researchers had secretly withdrawn the images.

5.Of 60 participants who got that far into the study and whose results could be verified, 58 entered passwords anyway. Only two chose not to log on, citing security concerns.

6.“The premise is that site-authentication images increase security because customers will not enter their passwords if they do not see the correct image,” said Stuart Schechter, a computer scientist at the M.I.T. Lincoln Laboratory. “From the study we learned that the premise is right less than 10 percent of the time.”

7.He added: “If a bank were to ask me if they should deploy it, I would say no, wait for something better,” he said.

8.The system has some high-power supporters in the financial services world, many trying to comply with new online banking regulations. In 2005, the Federal Financial Institutions Examination Council, an interagency body of federal banking regulators, determined that passwords alone did not effectively thwart intruders like identity thieves.

9.It issued new guidelines, asking financial Web sites to find better ways for banks and customers to identify each other online. January 2007 was set as the compliance date, though the council has yet to begin enforcing the mandate.

10.Banks immediately knew what they did not want to do: ask customers to download new security software, or carry around hardware devices that feed them PIN codes they can use to authenticate their identities. Both solutions would add an extra layer of security but, the banks believed, detract from the convenience of online banking.

11.The image system, introduced in 2004 by a Silicon Valley firm called PassMark Security, offered banks a pain-free addition to their security arsenals. Bank of America was among the first to adopt it, in June 2005, under the brand name SiteKey, asking its 21 million Web site users to select an image from thousands of possible choices and to choose a unique phrase they would see every time they logged in.

12.SiteKey “gives our customers a fairly easy way of authenticating the Bank of America Web site,” said Sanjay Gupta, an e-commerce executive at the bank. “It was very well received.”

13.The Harvard and M.I.T. researchers, however, found that most online banking customers did not notice when the SiteKey images were absent. When respondents logged in during the study, they saw a site maintenance message on the screen where their image and phrases should have been pictured. The error message also had a conspicuous spelling mistake, further suggesting something fishy.

14.Mr. Gupta of Bank of America said he was not troubled by the results of the survey, and stressed that SiteKey had made the bank’s Web site more secure. He also said that the system was only a single part of a larger security blanket. “It’s not like we’re betting the bank on SiteKey,” he said.

15.Most financial institutions, like Bank of America, have other ways to tell if a customer is legitimate. The banks often drop a small software program, called a cookie, onto a user’s PC to associate the computer with the customer. If the customer logs in from another machine, he may be asked personal questions, like his mother’s maiden name.

16.Rachna Dhamija, the Harvard researcher who conducted the study, points out that swindlers can use their dummy Web sites to ask customers those personal questions. She said that the study demonstrated that site-authentication images are fundamentally flawed and, worse, might actually detract from security by giving users a false sense of confidence.

17.RSA Security, the company that bought PassMark last year, “has a lot of great data on how SiteKey instills trust and confidence and good feelings in their customers,” Ms. Dhamija said. “Ultimately that might be why they adopted it. Sometimes the appearance of security is more important than security itself.”

(811 words   nytimes.com)

Questions 1-5

Do the following statements agree with the information given in the passage? Please write

       TRUE                 if the statement agrees with the writer

       FALSE               if the statement does not agree with the writer

       NOT GIVEN if there is no information about this in the passage

1.According to internet security experts, secondary security measures provide little additional protection against fraud.

2.In the Harvard and MIT study, two subjects didn’t log on without seeing the correct pictures.

3.According to Schechter, more than 90% of online banking customers studied logged on without seeing the right pictures.

4.The image system is the only security measure that the banks mentioned in the passage have currently.

5.Bank of America is the first bank that adopted the image system.

Questions 6-13

Answer the following questions or complete the following sentences by choosing NO MORE THAN THREE WORDS for each answer.

6.What is ING Direct and Vanguard?

7.What might online banking customers be cheated to give at a fraudulent Web site?

8.What may stop online banking customers from using new verification methods?

9.The key to online banking security is to verify the ______ of customers.

10.Where is PassMark Security located?

11.What is the reason why SiteKey is popular among online banking customers?

12.What was used instead of images in the Harvard and M.I.T. study?

13.How many security methods are mentioned in this passage?

Answer keys

1. 第一段“Now a study suggests that a popular secondary security measure provides little additional protection.”似与问题文字很接近,但是原文中a popular secondary security measure是指特定的一个措施,而非泛指所有secondary security measure。原文没有其它secondary security measure安全有效性的内容。故应选择NG。

2. 见第4、5段内容。第四段 “But the researchers had secretly withdrawn the images.”即研究人员撤下了图形,第五段“Only two chose not to log on, citing security concerns.”,有两个人因为安全考虑未进入。

3. T     见第6段。

4.  F     见第11、14段。

5.  F     见第11段“Bank of America was among the first to adopt it”,可见首批采用图形识别软件的银行并非Bank of America一家。

6.  A financial institution              见第二段。

7. (their) passwords              见第三段。

8.  less convenience            见第十段。

9.  identity          见第八、十段。

10.  Silicon Valley       见第十一段。

11.  easy to use              见第十二段。

12.  site maintenance message              见第十三段“When respondents logged in during the study, they saw a site maintenance message on the screen where their image and phrases should have been pictured.”

13. 4  分别见第十段的“download new security software”和“hardware devices that feed them PIN codes”,第十五段的“a small software program, called a cookie”,以及本文提到的site-authentication images。

英国/澳大利亚/爱尔兰/加拿大名校申请
本文地址:   点击这里将本文地址分享给朋友或其它论坛
页面功能:【打印该篇文章】  【调整正文字体 】  【关闭窗口

  留学评估,为你选择学校与专业,规划留学前景
进入留学评估 用户名: 密码:      忘记密码?

  更多相关内容
·阅读实战:Hackers target the home front
·雅思阅读的最高境界:无词阅读法
·阅读8分经验浅谈
·战胜雅思阅读两大招
·雅思阅读:阅读速度是关键
·雅思阅读部分拿高分的技巧
·剑桥雅思真题集5阅读部分分析
·雅思官方对阅读问题的解释
·雅思阅读判断题Not Given独家分析
·获得雅思阅读高分的五个要点
·新航道校长谈雅思阅读
·环球雅思徐佩谈略读定位法
·专家介绍适合考试的阅读习惯
·雅思阅读技巧:把握主题
·2006年雅思阅读考试文章总纲
·雅思阅读难句分析之省略句
 
University of Glasgow
英国大学申请
 格拉斯哥大学  东安格利亚大学
 伦敦大学戈德史密斯学院  莱斯特大学
 布里斯托大学  约克大学
 曼彻斯特大学  爱丁堡大学
 谢菲尔德大学  巴斯大学
 南安普顿大学  斯特灵大学
 诺森比亚大学  埃克塞特大学
 奇切斯特大学  巴斯泉大学
 伦敦大学皇家霍洛威学院  伦敦大学亚非研究院
 利物浦大学  伦敦艺术大学
 诺丁汉特伦特大学  谢菲尔德哈勒姆大学
 
澳大利亚大学申请
 阿德雷德大学  莫那什大学
 墨尔本大学  新南威尔士大学
 悉尼大学  麦考瑞大学
 卧龙岗大学  悉尼科技大学
 澳大利亚国立大学 ANU  塔斯马尼亚大学
 皇家墨尔本理工大学  西澳大利亚大学
 旋滨科技大学  昆士兰大学
更多>> 
利物浦大学
精彩内容推荐
海外院校排名 
留学文书>> 
学习计划 | 个人简历 | 推荐信
个人陈述 | 申请信 | 成绩单

海外生活>>

人在旅途 | 异国文化 | 金融理财
住宿打工 | 医疗保险 | 汽车驾驶

各国大学网址>>

澳大利亚 | 新西兰 | 英国
加拿大 | 爱尔兰 | 法国
德国 | 马来西亚 | 日本

北京千奕语言培训学校
 
网站首页 - 东西方简介 - About ewedu.net - 业务合作 - 联系我们 - 欢迎友情链接 - 会员注册
2008(since 2001) 东西方留学网