- Biometrics, Smart Cards, Tokens
- Secure User Authentication and Authorization
- User Identities and Provisioning
- User Password Security
Email Alerts
-
Royal Holloway 2012: Designing a secure contactless payment system
In his Royal Holloway thesis, Albert Attard proposes a contactless payment system to make card-not-present credit card transactions more secure.Feature
-
With mobile payments, security teams must move quickly
As employees make payments on their mobile devices, the security team must act quickly to ensure corporate assets remain secure.Tip
-
IT in Europe, Security Edition: Password security standards and trends
Passwords have long been a security problem. This IT in Europe: Security Edition looks at password trends and alternative forms of authentication.Learning Guide
-
Alternatives to passwords: Replacing the ubiquitous authenticator
As the relative security of passwords falters, are they destined for obscurity?Feature
-
RFID projects: Implementation considerations, RFID security concerns
RFID projects can aid organisations in many ways, including improving physical security. Learn more in this tip from Michael Cobb.Tip
-
Network password security: Following password policy best practices
Regularly updating network password policies to keep pace with threats is essential to enterprise security. Learn about password policy best practices in this tip.Tip
-
NHS smart card devices enable secure access to health care apps
Thanks to the NHS smart card programme and some creative middleware, four health trusts in North London have found an inexpensive way to offer secure access to health care applications.Article | 01 Sep 2010
-
SMS two-factor authentication for electronic identity verification
Tokens are no longer the only choice when it comes to OTPs and electronic identity verification. Learn about new two-factor authentication options involving SMS and mobile phones.Tip
-
Two-factor authentication helps charity comply with PCI DSS
Two-factor authentication is a must for any company that needs to comply with the Payment Card Industry Data Security Standard. Find out how one company implemented token-based authentication and how it overcame any rollout issues.Article | 22 Mar 2010
-
Single sign-on (SSO) authentication can help prevent password fatigue
Michael Cobb reviews first steps for establishing a federated environment where users sign into a system once and are able to access multiple services controlled by third parties.Tip
- VIEW MORE ON : Biometrics, Smart Cards, Tokens
-
Royal Holloway 2012: Designing a secure contactless payment system
In his Royal Holloway thesis, Albert Attard proposes a contactless payment system to make card-not-present credit card transactions more secure.Feature
-
Techniques for preventing a brute force login attack
A brute force login attack can enable an attacker to log in to an application and steal data. Rob Shapland explains how to prevent brute force attacks.Answer
-
Securing NoSQL applications: Best practises for big data security
NoSQL is great for big data, but security is often lacking in NoSQL applications. Davey Winder provides best practises for NoSQL security.Tip
-
Password security best practices: Change passwords to passphrases
Making passwords more complex hasn’t stopped hackers. Learn why passphrases are better, and surprisingly easy for users to remember.Tip
-
SOCA shuts down network of CVV sellers' carder sites
The Serious Organised Crime Agency shut down 36 CVV sellers who were selling stolen credit card and banking credentials to buyers around the world.News | 27 Apr 2012
-
A compliance strategy for the controversial cookie opt-in regulation
Businesses face many concerns with the PECR cookie law. Compliance expert Alan Calder offers a compliance strategy for the cookie opt-in regulation.Tip
-
Verizon data breach report highlights continuing POS vulnerabilities
Improperly secured point-of-sale systems continue to offer an easy target to cybercriminals according to the 2012 data breach report from Verizon.News | 22 Mar 2012
-
Forced browsing: Understanding and halting simple browser attacks
Forced browsing is when an attacker discovers the URL of a restricted webpage. Expert Rob Shapland explains how to halt this browser attack method.Ask the Expert
-
Taking control of smartphone proliferation while avoiding user anarchy
With smartphone proliferation raging through companies, IT teams are turning to MDMs to keep corporate data safe. Are current MDMs up to the task?Feature | 14 Mar 2012
-
Pros and cons of touch-gesture recognition authentication
Touch-gesture recognition is an alternative authentication system for Windows 8 mobile devices. Expert Davey Winder examines the pros and cons.Answer
- VIEW MORE ON : Secure User Authentication and Authorization
-
The new EU data protection regulation: Planning for compliance
The new data protection rule will impact businesses worldwide. Discover quick wins for SMBs and projects for large businesses to move to compliance.Tip
-
Group Policy settings FAQ: Why they matter
Group Policy settings in Microsoft's Active Directory are useful not only for managing user access and applications, but IT admins can also apply them to desktop and server security.FAQ
-
Privacy and electronic communications regulations: Guide to EU cookie compliance
Get advice for implementing PECR regulations requiring website owners to request users’ permission to place a tracking cookie.Guide
-
Windows security case study: Controlling Windows 7 user privileges
After migrating from Windows XP to Windows 7, Oxford University Press used Avecto’s Privilege Guard to control Windows 7 user privileges.News | 24 Feb 2012
-
Jericho founder: Get involved in plan for protecting identity online
Respected identity expert Paul Simmonds says the NSTIC's identity project needs European involvement, or it may not meet Europe's needs.News | 13 Jan 2012
-
Industry groups offer conflicting options for protecting identity online
The Jericho Forum is promoting its strategy for protecting identity online, claiming its approach is superior to the NSTIC or vendors.News | 21 Dec 2011
-
Segregation of duties: Small business best practices
Segregating duties can be tough in organisations that have few staff members and resources. Get duty segregation best practices for SMBs.Tip
-
Website secure login: Alternatives to out-of-wallet questions
Learn about alternatives to static knowledge-based authentication and out-of-wallet questions for secure website logins in this tip.Tip
-
Online authentication methods: Personal information cards and Web SSO
Learn more about information cards authentication and how it can help lock down online authentication at your organisation.Tip
-
How West Midlands police collared identity and access management vendors
Streamlining access is extremely important for the 15,000-person unit, particularly when dealing with information as sensitive as that in police records.News | 07 Jun 2011
- VIEW MORE ON : User Identities and Provisioning
-
Techniques for preventing a brute force login attack
A brute force login attack can enable an attacker to log in to an application and steal data. Rob Shapland explains how to prevent brute force attacks.Answer
-
The new EU data protection regulation: Planning for compliance
The new data protection rule will impact businesses worldwide. Discover quick wins for SMBs and projects for large businesses to move to compliance.Tip
-
Using open source intelligence software for cybersecurity intelligence
Discover the information that may be leaking out of your organisation before hackers use it to launch an attack against your organization.Tip
-
Password security best practices: Change passwords to passphrases
Making passwords more complex hasn’t stopped hackers. Learn why passphrases are better, and surprisingly easy for users to remember.Tip
-
Verizon data breach report highlights continuing POS vulnerabilities
Improperly secured point-of-sale systems continue to offer an easy target to cybercriminals according to the 2012 data breach report from Verizon.News | 22 Mar 2012
-
How to prevent Facebook hacking and Twitter hijacking
Organisations should guard against Facebook hacking and Twitter hijacking. Expert Davey Winder discusses Twitter and Facebook security tools that can help.Answer
-
IT in Europe, Security Edition: Password security standards and trends
Passwords have long been a security problem. This IT in Europe: Security Edition looks at password trends and alternative forms of authentication.Learning Guide
-
Opinion: Firms can’t or won’t address social networking security risks
It's a common refrain: Even companies that are aware of social networking security risks don't do anything about them.Opinion
-
Alternatives to passwords: Replacing the ubiquitous authenticator
As the relative security of passwords falters, are they destined for obscurity?Feature
-
A pen tester’s perspective on creating a secure password
A pen tester explains the importance of creating a secure passwordTip
- VIEW MORE ON : User Password Security