So... I tried to login to the Citibank website again. I keyed in my frigging username and password, which as I mentioned in this previous post that they weren't making my life easy with remembering it.
So after that... I was greeted with this little text below.
Oh... my god... You've gotta be kidding me right?!?!?!?! It's not enough that you made me had to write down BOTH my username and password, now this? The problem with this line of questioning is... for some of the questions other people would know the answer, or easily infer it with a little social engineering. IE.. Where your parents were born, your parent's birthday, your first job. Heck.. maybe all this could be easily found out via a search on the various blogs I might have had previously!
There are some question which *might* be harder to find out but I might have a hard time remembering and thus, I'd need to write it down and... well we're back where we started!
Does this REALLY make it more secure? Or just inconvinience the user too much?