Online and Digital Identification, Securing Web 2.0, PKI and Digital Certificates

Report: Problems with some two-factor authentication

Thursday, April 22, 2010

Most agree that using two-factor authentication for access to secure networks is better than simple user names and passwords, but a report from Gartner Research states that hackers have found ways to compromise these more advanced systems as well.

Trojan-based, man-in-the-browser attacks have found vulnerabilities to one-time password tokens and could also be used against biometric and smart card technology, says Avivah Litan, vice president and analyst at Gartner Research. A layered security approach can help protect individuals from these kinds of attacks.

There are 559 words in the rest of this article …

Library Access Required

Library subscribers have access to the full archives of more than 10,000 original news items and feature articles published by AVISIAN’s suite of ID technology publications (ContactlessNews.com, CR80News.com, DigitalIDNews.com, FIPS201.com, NFCNews.com, RFIDNews.org, SecureIDNews.com, and ThirdFactor.com).

For just $49, you receive unlimited password-protected access to content on all of AVISIAN’s sites for an entire year. Your subscription helps fund the continued creation of independent, insightful content. Find out more.

Sign in as a Subscriber

If you are already a subscriber, you may sign in now. Enter your Email Address and Password and click Sign In.

Email Address →
Password →
Action →

If you have forgotten your password, enter just your Email Address, and click Send Password.

Email Address →
Action →

PhoneFactor Inc. continues to grow its financial services roster announcing additions to its most recent clientele: Heartland Financial USA, OceanFirst Bank, Northway Bank, and CUANY Credit Union. The PhoneFactor solutions have been utilized by financial institutions as a way to protect customers using e-banking from online fraud. Additionally the PhoneFactor technology can authenticate bank employees for remote logins.

read more »

Verayo and SkyeTek have partnered with GLOBALPCCA, an investments and health care solutions group, to deliver an RFID authentication solution to target consumer and pharmaceutical product anti-counterfeiting in Africa.

read more »

A new study finds there is no empirical evidence to validate claims about the use of RFID technology in the prison environment, according to Homeland Security Today.

read more »

Ceelox has announced that it has finished development of a prototype application that would use Ceelox’s fingerprint biometrics to enable biometric authentication in online environments such as corporate intranets, cloud computing networks and commercial applications like online banking and other personal account-based access.

read more »

After an official security review of the best authentication servers on the market for businesses and banks, Cryptomathic is pleased to announce that its two-factor authentication technology supports all the mechanisms outlined in review and provides customers with optimal and secure online banking.

read more »

PhoneFactor Inc. has added authentication for online banking to its list of service features. The company has introduced the Universal Banking Gateway and added another secure layer to online banking functions.

read more »