Telltale Fingertips
Just got to have that red-hot Gnarls Barkley single before it even hits iTunes? Good luck. Gone are the days when a simple password was all that stood in the way of a best-selling artist's next hit landing in the wrong hands. The music industry has turned to the next generation of online security to thwart cyberthieves--one that may soon extend to other security-sensitive cybertransactions like banking.
For the past six months, to access the newest releases, you have had to supply something perhaps even harder to replicate than your fingerprints: fine motor skills. Your typing speed and the pressure of your fingers on the computer keys are a rhythmic pattern that you repeat every time you type a given word, a pattern nearly impossible for someone else to duplicate.
Keystroke authentication is the newest offering from the field of biometrics--the measurement and analysis of unique physical or behavioral characteristics--and it's accurate 98% of the time. "We've had more than 2 million deliveries without a leak," says John Heaven, CEO of Musicrypt, a Toronto-based digital-rights-management firm that arranges music distribution between record labels and radio stations or the press.
Providing this enhanced level of protection for Musicrypt and its clients is BioPassword Inc., a security-software company based in Issaquah, Wash. Keystroke patterning was first employed by the military a century ago in its use of Morse code, which also allows senders to be identified by their tapping rhythms. In the 1980s, Stanford University scientists applied the technique to computer security. But it was not until BioPassword bought the patents from the school in 2002 that keystroke dynamics found its first commercial use. BioPassword's developers harnessed the technology into portable software and began selling it in 2004 as a backup password-protection authentication method for many online sites. Now more than 30 companies, or about half a million users, have signed on. As BioPassword CEO Mark Upson puts it, "For $1 per user annually, you've got online security that can't be sold, lost or replicated."
BioPassword's best customers so far are banks and credit unions, which are under federal mandate to adopt stronger authentication measures to protect online customers against identity theft and other fraud. To access account information, online banking generally requires a password with a maximum of 10 character points. Biometric IDs have more than 80 distinct data points.
For most financial institutions, the new federal rules mean finding a second method to authenticate a user while ensuring that the new system doesn't disrupt business. Fingerprinting and retinal scanning are options, but both require users to have expensive additional equipment. Some credit unions also considered giving members ID tokens, a popular practice for many banks, but this proved cost prohibitive.
- 1
- 2
- NEXT PAGE »
Most Popular »
- Jenny Sanford: The Savviest Spurned Woman in History
- America's Most Wanted Teenage Bandit
- Church Group Attacks Christmas Commercialism
- Rattled by Iran, Arab Regimes Draw Closer
- Israel vs. Hizballah: Drumbeats of War
- How to Rule India: Break It Into More Pieces?
- A Mounting Suicide Rate Prompts an Army Response
- Corliss Appraises Avatar: A World of Wonder
- Citi's TARP Repayment: The Downside for a Troubled Bank
- Ayatullah Khomeini Returns to Haunt Iranian Politics
- Church Group Attacks Christmas Commercialism
- A Mounting Suicide Rate Prompts an Army Response
- America's Most Wanted Teenage Bandit
- How to Rule India: Break It Into More Pieces?
- Jenny Sanford: The Savviest Spurned Woman in History
- Citi's TARP Repayment: The Downside for a Troubled Bank
- In Hershey's Possible Cadbury Bid, a School's Fate
- Citi's Dubai Mistake: A Sign of More Bad Things to Come?
- Forget Zhu Zhu Hamsters, Classic Toys Have Power
- Rattled by Iran, Arab Regimes Draw Closer







RSS