Finance sector is littered with vulns, and guess what – most can be resolved by patching


This is the same sector that seems to think it's completely fine to process the majority of our financial transactions using a 16 digit card number + expiry date and a number printed on the back and very little else other than trust.

They also seem to think it's completely fine to protect your bank accounts with a 1960s magnetic stripe card and a 4 digit numeric pin number.

From what I can see, we get all up in arms if our email accounts don't have two-factor security and complicated anti-hacking measures, but we're fine with the whole notion of banks that have about as much real security as the piggy bank you had when you were 6.

