« Bank of America Unveils Multi-Factor Security for Consumer Accounts | Main | Stonebridge and American Bank Offer Secure Account Login »

Citibank Fights Fraud with Personalized Emails

By Jim Bruene on May 30, 2005 12:01 AM

Citi_secure_email_closeupIt's fitting that the financial company most targeted in phishing attacks, Citibank, would be the first to introduce a new email format that goes a long way towards helping users identify legitimate email messages.

Citi_secure_email_message The personalized emails (click on inset to enlarge) include not only the name of the recipient, but also the last 4 digits of the user's ATM card. While simple personalization with the customer name would help many users identify legitimate emails, it's far from fool-proof.

First, there's the relatively common practice of including first name and/or last names in email addresses. Also, some phishers are using direct marketing tactics and first running email addresses through various databases to append actual names and other info to the email record in order to develop a personalized pitch (see ZD-Net article).

Citibank's new email format was announced to customers through a short message on the top of the online banking screen in early May. It is also now mentioned in the bank's main FAQ page.

Analysis
This is a great first step in winning back the confidence of users. Eventually email standards will evolve so that the email client will be able to readily identify legitimate emails, but that could be years in the future.

If you are considering a similar approach, you might want to let users choose the name and identifying information that appears in the personalization box. In February, we reported on a UK security initiative that took that approach.

For more information:

-- JB

Editor's Note: Citibank received an OBR Best of the Web award for this and other security features in Online Banking Report #119, "Marketing Security."

Comments (0)
AddThis Social Bookmark Button

Most Recent Posts:

Post a comment

(If you haven't left a comment here before, please note that we will read your comment before it is approved to go up on the blog. However, we'd prefer that you and our other readers didn't have to wait. If you'd like your comments to appear instantly in the future, you can create a TypeKey account and we'll set you up as a trusted commenter!)


Please enter the security code you see here

Sponsors

Finovate 2008 - Come see the future of finance & banking!


Sponsored Links

Events

Research

  • NEW! Online Investing Communities: Will social networking revolutionize saving & investing?- Find out more
  • NEW! Searching for Customers 3.0: Search engine marketing for financial institutions- Find out more
  • Person-to-Person Lending 2.0: Disruptive service or market niche? - Find out more
  • Mobile Money and Payments: Why credit & debit card issuers should embrace mobile delivery now - Find out more

Products & Services

  • Compare CD (certificate of deposit) interest rates and read customer reviews at Bankaholic