Results 1 to 2 of 2

Thread: The strong authentication weakened

  1. #1
    Abdiel456 is offline Member
    Join Date
    Apr 2009
    Posts
    85
    Rep Power
    4

    Default The strong authentication weakened

    Gartner Research announced that strong authentication methods require two factors to thank you for experienced hackers.

    Strong Authentication

    Authentication is a process used to identify a machine or a person on a network. It is called strong when two elements or two "factors" or more are used, such as a password and a fingerprint. In principle, the increase in factors increases process safety.

    The two-factor authentication is common in professional circles. A banking site can request a password and a code generated from single-use machine authentication and the server. However, this system is now vulnerable to attack from the man in the middle.

    Deception and diversion

    Specifically, banks based on an appeal by the owner of the account as one factor authentication have already seen the pirates come to transfer calls to users on their phones that records the call to play it at the bank, passing for the client. Hackers use software to finally intercept the redirect network traffic to the website of the bank to their machine and take advantage of single-use code without the user noticing. Some hackers have even come to rewrite the browser information to the user who thinks that his account is normal when he was stoned, with the aim of delaying the possible discovery of fraud and allow time for the cracker of escape the justice system.

    Losses related to such attacks now amount to nearly $ 100 million (approx. EUR 70 million) by the Internet Crime Complaint Center. One of the malware used in this kind of attack is a Trojan horse that Zeus was injected on Amazon EC2 cloud last week ("The disappointments of Amazon EC2).

    The importance of being updated

    Gartner encourages companies to take further steps to protect themselves by changing the factors of authentication to abandon the call and the code for single use safer methods such as biometrics, RFID, etc.. It is also possible to increase the number of factors and to use methods of communication different from those used to access information. For example, use something other than the web browser as a means of authentication.

  2. #2
    SteveJLaye is offline Junior Member
    Join Date
    Mar 2010
    Posts
    1
    Rep Power
    0

    Thumbs up Strong Authentication UK

    Leading provider of Database Development, Business Intelligence, Software Development and Network Security. Discover our consultancy and support services for IT solutions.


    SymTex
    Eliot Park Innovation Centre
    Barling Way

    Nuneaton
    Warwickshire
    CV10 7RH
    UK
    0800 58 70 949

Similar Threads

  1. ASRock 890GX strong Motherboard
    By SmithJohnson in forum Motherboards & Memory
    Replies: 0
    Last Post: 08-26-2010, 03:53 PM
  2. Different authentication protocols
    By Bob Willis in forum General Networking
    Replies: 0
    Last Post: 02-26-2010, 08:44 AM
  3. Creating a Strong Password
    By WalkerCook in forum Networking Jargons
    Replies: 0
    Last Post: 01-06-2010, 02:57 PM
  4. Firefox 3 14 Million downloads and still going strong
    By kannan3456 in forum Everything Else
    Replies: 0
    Last Post: 07-29-2008, 04:43 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
SEO by SubmitEdge

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48