Banking on fraud

Bruce Schneier has raised an interesting point about phishing: who bears the responsibility for stopping it?

At the fundamental level it's individuals who need to be on their guard against phishing. We need to be more aware that phishing is our problem. There is absolutely no reason to send an email containing your banking details to anyone. Period.

But beyond that it's clear that the banks are not doing enough either. There are a variety of steps that could be taken to solve the problem but, until the financial cost is passed directly onto the banking community, we won't see them in this country.

