 Max Foster on the autocomplete function |
Engineers at a major international bank have spent the night modifying one of their websites after Breakfast exposed a potential security gap in its software.
You may remember that on Friday we told you that a technical flaw with the Cahoot online bank meant customers could potentially see into other people's accounts.
Now, another Breakfast viewer has alerted us to a problem with the Morgan Stanley credit card.
Max Foster told Breakfast what to watch out for.
Here's what Max says:
Morgan Stanley credit card holders can manage their accounts online.
But one discovered he could get into the secure area of the website by typing just the first digit of his card number.
His computer had been set up to remember the rest of the number and automatically put in the password.
This is a common feature on PCs but shouldn't work with online financial services, according to APACS, which represents the bank payment system.
Otherwise someone else could use a computer with your settings on it to get into your account.
When Morgan Stanley was alerted to the issue it admitted it was in a grey area of the law.
Its changed its policy and technical teams worked through the night to make site more secure. 