***Begin Quote***
Protecting your information is very important to Vanguard. Over the next few months, we’ll be introducing significant security enhancements to better safeguard your information on Vanguard.com®. These changes will help ensure that only you—or those you’ve designated to act on your behalf—can access your information online.
***End Quote***
They’re basically splitting the logon and password screens and putting a user selectable picture on the second page. I guess if you don’t see your animal, then you’re not supposed to put in your password. I don’t understand how this prevents a man-in-the-middle attack. It does prevent a dumb phishing but not a sophisticated one. If you present yourself at the phish site, it can quickly open a connect to Vangard, present you credential, take the screen, show it to you, and you’ll give them your password. It’ll probably take a day of a good coder’s time to beat that one. And, it breaks all teh login tools that people, like me, currently use. ARGHH!









Maybe I can get the experts to weigh in on this. But, I dispute the “preventing”.
LikeLike
Vanguard Message Number RY7Q-1GJQ-02
Thank you for your e-mail. We appreciate the time you have taken to contact us.
Protecting your information is very important to Vanguard. We are introducing significant security enhancements to better safeguard your personal information on our website. These changes will help ensure that only you, or those designated to act on your behalf, can securely access your information online.
We have enhanced our logon to incorporate a security image that is known only to you and Vanguard. We only display your security image if you log on from your own computer or after you answer a security question, making it very difficult for an unauthorized person to obtain the image. When you see the image, you can be confident that you are at our website and not an imposter site.
Vanguard will be able to track which computers you regularly use, preventing potential fraudulent users from logging on to your account. We are able to track the computers because we assign a unique identifier to each computer you use to access our website. If you log on from a different computer, we will take additional steps to verify your identity, such as requesting that you answer one of the security questions you chose when you established your security image.
We appreciate your comments regarding our website and have forwarded them to our management review team. At Vanguard, we commit ourselves to offering the highest quality of service to our shareholders.
If you have additional questions, please contact our Client Services Department at 1-888-285-4563. We are available Monday through Friday from 8 a.m. to 10 p.m. and Saturday from 9 a.m. to 4 p.m., Eastern time. An associate will be pleased to assist you.
Melva A Conquest
Communication Associate
Vanguard
CONFIDENTIALITY STATEMENT. The information contained in this e-mail message, including attachments, is the confidential information of, and/or is the property of, Vanguard. The information is intended for use solely by the individual or entity named in the message. If you are not an intended recipient or you received this in error, then any review, printing, copying, or distribution of any such information is prohibited, and please notify the sender immediately by reply e-mail and then delete this e-mail from your system.
LikeLike