Telltale Fingertips
Just got to have that red-hot Gnarls Barkley single before it even hits iTunes? Good luck. Gone are the days when a simple password was all that stood in the way of a best-selling artist's next hit landing in the wrong hands. The music industry has turned to the next generation of online security to thwart cyberthieves--one that may soon extend to other security-sensitive cybertransactions like banking.
For the past six months, to access the newest releases, you have had to supply something perhaps even harder to replicate than your fingerprints: fine motor skills. Your typing speed and the pressure of your fingers on the computer keys are a rhythmic pattern that you repeat every time you type a given word, a pattern nearly impossible for someone else to duplicate.
Keystroke authentication is the newest offering from the field of biometrics--the measurement and analysis of unique physical or behavioral characteristics--and it's accurate 98% of the time. "We've had more than 2 million deliveries without a leak," says John Heaven, CEO of Musicrypt, a Toronto-based digital-rights-management firm that arranges music distribution between record labels and radio stations or the press.
Providing this enhanced level of protection for Musicrypt and its clients is BioPassword Inc., a security-software company based in Issaquah, Wash. Keystroke patterning was first employed by the military a century ago in its use of Morse code, which also allows senders to be identified by their tapping rhythms. In the 1980s, Stanford University scientists applied the technique to computer security. But it was not until BioPassword bought the patents from the school in 2002 that keystroke dynamics found its first commercial use. BioPassword's developers harnessed the technology into portable software and began selling it in 2004 as a backup password-protection authentication method for many online sites. Now more than 30 companies, or about half a million users, have signed on. As BioPassword CEO Mark Upson puts it, "For $1 per user annually, you've got online security that can't be sold, lost or replicated."
BioPassword's best customers so far are banks and credit unions, which are under federal mandate to adopt stronger authentication measures to protect online customers against identity theft and other fraud. To access account information, online banking generally requires a password with a maximum of 10 character points. Biometric IDs have more than 80 distinct data points.
For most financial institutions, the new federal rules mean finding a second method to authenticate a user while ensuring that the new system doesn't disrupt business. Fingerprinting and retinal scanning are options, but both require users to have expensive additional equipment. Some credit unions also considered giving members ID tokens, a popular practice for many banks, but this proved cost prohibitive.
Top Stories on Time.com
Most Popular
-
Most Read
- Why Sarah Palin Quit as Governor
- How Medicated Was Michael Jackson?
- Searching for Palin's 'Hot Photos'
- Behind North Korea's Missile Launch
- Afterbirth: It's What's For Dinner
- Asian Film Fireworks for the Fourth
- What Happened to the Stimulus?
- Director Sydney Pollack Dies
- North Korea Tries to Ramp Up Tech Infrastructure
- Ban Ki Moon Leaves Burma Disappointed
-
Most Emailed
- How Medicated Was Michael Jackson?
- Schwarzenegger's Failure in California
- Asian Film Fireworks for the Fourth
- Afterbirth: It's What's For Dinner
- Amazing Births
- Study: 'Depression Gene' Doesn't Predict the Blues
- The Seriously Funny Man
- Mark Twain: Our Original Superstar
- Bismarck: The Town the Recession Missed
- How to Deal with Swine Flu: Heeding the Mistakes of 1976
Mixx





RSS