Snowblink
SEP 07
05

First Direct Security Hole

First Direct has sadly got a horrible security hole in place, that is easily open to scamming: They call you up and ask you to answer security questions.

I complained, but had to explain and justify it to every single person I spoke to. It is disturbing that they do not understand security and continue to do this.

"Why would this be an issue? We don't give out your password." No... We just open up the possibility that a fraudster could obtain your personal details. "But they don't know First Direct procedure." Neither do most of your customers. If they wanted to, they could open up an account to learn your procedures.

You get the idea. They appear to be clueless about security.

They recommend that you don't respond to emails asking for personal details. Why should the phone be any different?

Anyone know a bank that doesn't do this?

Tagged As