In a paper released at an RSA security conference this month in San Francisco, PayPal said there is a significant number of site visitors using browsers as old as Internet Explorer versions 3 and 4, released in August 1996 and September 1997, respectively. Such "unsafe browsers" lack the latest technology for blocking phishing sites and do not support Extended Validation Certificates, which are digital certificates that establish Web sites as trusted during online transactions.
"At PayPal, we are in the process of re-implementing controls, which will first warn our customers when logging in to PayPal from those browsers that we consider unsafe," the eBay-owned payment service said. "Later, we plan on blocking customers from accessing the site from the most unsafe -- usually the oldest -- browsers."
PayPal in February warned people that Apple's Safari browser didn't have the necessary security to protect Web users and recommended the latest versions of Microsoft's Internet Explorer and Mozilla's Firefox. Safari is the default browser in Apple Macintosh computers and in the iPhone smartphone.
To beef up its own security, PayPal this year acquired Fraud Sciences for $170 million in cash. PayPal planned to use the company's online risk and security tools to enhance the fraud management systems of both PayPal and eBay. Fraud Sciences' risk tools and analytics would be targeted at accelerating the development of advanced fraud detection tools, PayPal said.
Stay connected and informed by visiting the CA Solutions Center Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.