Still Licensed To Phish

A couple of years ago I grumbled about companies’ clueless use of domains and email and, judging by this horrendous example from Chase, things aren’t getting much better. Meanwhile, the ludicrous design of the Verified By Visa/3-D Secure system continues to demonstrate that not only do companies handling our money get it wrong, they then stubbornly refuse to heed advice and stick with approaches that harm online security.

You have to marvel at the mixture of arrogance and ignorance that must be involved, and wonder whether these companies need to fundamentally change their corporate cultures to both attract developers with more up-to-date skills and listen to those with web expertise.


