FYI...
RSA token cloned...
-
http://arstechnica.com/security/2012/05/rsa-securid-software-token-cloning-attack/May 21, 2012 - "A researcher has devised a method attackers with control over a victim's computer can use to clone the secret software token that RSA's SecurID uses to generate one-time passwords. The technique, described on Thursday by a senior security analyst at a firm called SensePost, has important implications for the safekeeping of the tokens. An estimated 40 million people use these to access confidential data belonging to government agencies, military contractors, and corporations... both RSA and its customers have been targeted by highly motivated hackers, so attack scenarios in which PCs are infected or stolen aren't unrealistic... the sensitive RSA data should be managed by a industry-wide specification known as the TPM, or trusted platform module*."
*
https://en.wikipedia.org/wiki/Trusted_platform_module
