Geekzone: technology news, blogs, forums
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.

View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 | 3 
2851 posts

Uber Geek

Lifetime subscriber

  # 1491363 12-Feb-2016 20:08
One person supports this post
Send private message

Knowing a fair bit about this sort of stuff I have no real concern as has been mentioned above, a few things to consider.


- The link is only good for 1 month, afterwards it's dead and you can only view your bill from within MySpark portal


- Each month you get emailed a new link with a new GUID so it's not like the old GUID is re-used.


- All this information is available from within the MySpark portal so in regards to attack vectors getting in and accessing your current and previous account history via your personal email address and either guessing your current password, or a password reset email and new password seems like a far more likely attack vector.


- This is the same information that is delivered into your letterbox which the vast majority of in NZ aren't secure


- It's no better or worse in many respects to attaching the PDF to an email, as it could be picked up in transit or lost at the destination since your email box was full.




So what is the big issue?

624 posts

Ultimate Geek

  # 1491938 14-Feb-2016 10:19
Send private message

IMO this threat is relatively small compared with other attack vectors (e.g. social engineering, interception of bills posted to a physical address), but should still be addressed through some authetnication mechanism.

1 | 2 | 3 
View this topic in a long page with up to 500 replies per page Create new topic

Twitter and LinkedIn »

Follow us to receive Twitter updates when new discussions are posted in our forums:

Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:

Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:

News »

Microsoft New Zealand Partner Awards results
Posted 18-Oct-2019 10:18

Logitech introduces new Made for Google keyboard and mouse devices
Posted 16-Oct-2019 13:36

MATTR launches to accelerate decentralised identity
Posted 16-Oct-2019 10:28

Vodafone X-Squad powers up for customers
Posted 16-Oct-2019 08:15

D Link ANZ launches EXO Smart Mesh Wi Fi Routers with McAfee protection
Posted 15-Oct-2019 11:31

Major Japanese retailer partners with smart New Zealand technology IMAGR
Posted 14-Oct-2019 10:29

Ola pioneers one-time passcode feature to fight rideshare fraud
Posted 14-Oct-2019 10:24

Spark Sport new home of NZC matches from 2020
Posted 10-Oct-2019 09:59

Meet Nola, Noel Leeming's new digital employee
Posted 4-Oct-2019 08:07

Registrations for Sprout Accelerator open for 2020 season
Posted 4-Oct-2019 08:02

Teletrac Navman welcomes AI tech leader Jens Meggers as new President
Posted 4-Oct-2019 07:41

Vodafone makes voice of 4G (VoLTE) official
Posted 4-Oct-2019 07:36

2degrees Reaches Milestone of 100,000 Broadband Customers
Posted 1-Oct-2019 09:17

Nokia 1 Plus available in New Zealand from 2nd October
Posted 30-Sep-2019 17:46

Ola integrates Apple Pay as payment method in New Zealand
Posted 25-Sep-2019 09:51

Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.

Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron

Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.