I know Brian Collins is a man to be taken seriously. If he's prepared to tell the London Evening Standard that "evil twin"
hacking techniques are, genuinely, being used in London to steal passwords, then he's not making it up.
But I have to say, I think that most online banks are aware of the potential problem. I recently set up a business online banking account, and it was very well protected. Not only do you need cookies and passwords and IDS, but you also need a secure digital certificate. I don't think that a log of the transaction between the certifying agency and the PC would be enough to duplicate...