Hacking Web Services
siduri writes "Udi Manber, chief scientist at Yahoo!, gave a great talk on the kinds of hacks that Yahoo sees at the IEEE's Symposium on Security and Privacy. I wrote an overview of his talk for Dr. Dobb's Journal. While some of the message is well-known stuff (like that people will spend a lot of time hacking the most trivial things), the details of what Yahoo has to deal with are really pretty interesting."
You can't get a credit card in my name unless you've managed to get more than my personal information: you've managed to take over my personal home phone number and intercept all telephone calls to me; you've managed to steal all my USPS mail and e-mail; you've managed to forge my signature exactly.
Sorry, but that doesn't happen.
Identity theft is urban folklore and one thief getting very lucky with his social engineering.