Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Beyond passwords: 5 new ways to authenticate users

New biometric and cognitive tools revolutionize multifactor approach
By Jeff Vance , Network World , 05/31/2007

You feel like checking your bank account online.

You go to your bank Web site, enter your user name and password, and then are asked, via a dropdown menu, several questions relating to the most memorable family dinner of your life.


Slideshow: A look at some fresh ways to make sure the right people are gaining entry to a Web site


Who was there? How old were you? What type of food was served? If you answer correctly to this set of questions, you're authenticated. Next, to demonstrate that you're not on a phish site, the bank's authentication software displays a special phrase that you preselected, such as chicken-fried steak or mom's apple pie.

According to a start-up called Cogneto, this type of software-based authentication is far more user friendly and cost effective than hardware-based authentication methods.

At first signup, customers enter, via dropdown menus, information based on their life, either their favorite trip, dinner, party or other event. Cogneto's Unomi software does the rest. The next time the customer logs in, the software not only provides safe authentication, it puts customers in a good frame of mind by prompting them to recall a pleasant personal experience. (For a quick demo, see >> .)

Unomi represents one of the many new biometric/cognitive methods of authentication that have emerged to help banks and other online businesses deal with new regulations or with the general need to tighten up online security in the wake of so many data breaches.

Comments (13)
Login
Forgot your account info?

Dont give them the finger yetBy Anonymous on June 11, 2007, 3:08 amStatic passwords are not the solution, fixed questions as well are not the answer, and biometrics are not the answer. The world of digital security is different...

Reply | Read entire comment

Real security can not be based on educated usersBy barreto on June 10, 2007, 2:10 pm Phishing victims are mainly 18-29 years old. Authentication security can not be based on education, regarding millions of users, except if included in high school...

Reply | Read entire comment

Show Passwords the Finger !!!By Anonymous on June 8, 2007, 3:20 pmI completely agree with this article. We have developed a very unique biometric solution for SAP called bioLock, but uneducated users still believe that their user...

Reply | Read entire comment

Excellent article. Feedback for Cogneto UnomiBy barreto on June 8, 2007, 10:16 amYour system (Cogneto Unomi) is a step in the right direction; congratulations. But it has a couple of characteristics you can improve, IMHO: FIRST: To fight phishing,...

Reply | Read entire comment

Beyond passwords: 5 new ways to authenticate usersBy Patrick Audley on June 7, 2007, 1:14 pmThe recognition phrase strengthens the association of the event cognitively and provides very little security benefit. When a user is being phished the memory, display...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed
Save The Date!
What They Are Saying

superantispywarepro will clean that for you!- Anon

Join the Discussion