SYSTEM AND METHOD FOR IDENTIFYING SECURITY BREACH ATTEMPT OF A WEBSITE
The present invention is a method, circuit and system for detecting, reporting and preventing an attempted security breach of a commercial website (for example a banking website), such as identity theft, website duplication (mirroring/Phishing), MITB (man in the browser) attacks, MITM (man in the middle) attacks and so on.
1 . A website security system for detecting security breach attempts associated with a man in the browser scheme, said system comprising: a code of a website; a software module, functionally associated with said code and adapted to encrypt user information, at the application level, using a changing public encryption key associated with said website; and a server adapted to provide a client computer with said code and said software module.
2 . The system according to claim 1 , wherein said software module is further adapted to receive a public encryption key either upon being served to or upon instancement on a client browser.
3 . The system according to claim 1 , wherein said software module is further adapted to create a public encryption key upon being served to a client browser.