BMW South Africa`s Web site (
www.bmw.co.za
) received a zero-rating for security from local security Web site 2600.co.za`s SECSI (secure e-commerce site initiative) department this week - the first zero-rating it has ever issued.
BMW`s site, which took second place in Business Day`s annual Web site awards last year, received the rating for alleged insecurities on its application for its finance and login pages.
BMW says it identified the problem three weeks ago - before 2600 contacted the company - during the process of revamping its site. According to Attie Wilcocks, manager, Internet systems, BMW South Africa, the insecurity is being addressed, and digital certificates are expected to be available on the site by next Tuesday.
"The lack of encryption enables the `sniffing` of personal details to take place," states 2600`s security advisory. "A malicious individual or corporate entity could utilise this information in the fields of fraud, industrial espionage, spam, social engineering and for the invasion of user privacy."
Share