Skip to content

Comment on American Express fails miserably at basic security

Comments

Unfortunately, most of today's "security" with regards to credit cards are merely there to deter the easy grabs. Any determined person could easily get anyone's details through a number of means.

Sure, but why not grab low hanging fruit?

While I don't know enough to refute the main fact, my gut feeling is that while that may be true, any company doing this time of work on the web needs to at least take care of the base amount of security (using HTTPS where applicable, not storing plain text passwords, etc.)

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.