FB pixel

BioCatch pitches behavioral biometrics as second factor for PSD2 to stop fraud through third parties

 

The third-party payment providers (TPPs) that financial institutions must allow to connect to their systems through open APIs under PSD2 represent a vulnerability that will be targeted by fraudulent actors, according to a BioCatch blog post.

PSD2 is intended to make online payments easier, flexible, and secure, but many of the security and fraud controls in place at European banks are not set up to monitor sessions originating with TPPs, and will not be able to stop attacks from that vector, BioCatch says. TPPs are subject to fraud detection standards, but any fraudulent accounts they allow to open must be identified after the fact by financial institutions to prevent attacks from being successful.

The Strong Customer Authentication (SCA) section of PSD2 requires two-factor authentication, and behavioral biometrics can be used to satisfy this requirement without introducing friction to the user experience, according to the blog. Continuous monitoring of users before and after login allows financial institutions to identify fraud, and stop account takeover attacks in the initial authentication or re-authorization process. It also allows them to monitor the success rate of TPPs acting as secure partners.

BioCatch recently deployed Redis Enterprise VPC to handle its rapidly scaling customer base, for which it processes 5 billion transactions per month for 70 million customers.

Article Topics

 |   |   | 

Latest Biometrics News

 

Opinions on UK Online Safety Act emphasize importance of enforcement

Online safety legislation is making headlines around the world. But in places where laws have taken effect, are they proving…

 

UK Home Office raises estimate for passport contract to 12 years, £576M

The UK Home Office has opened a third round of market engagement for its next major passport manufacturing and personalization…

 

US lawmakers move to restrict AI chatbots used by kids

A bipartisan pair of House and Senate bills would impose new federal restrictions on AI chatbots, including a ban on…

 

Utah age assurance law for VPN users takes effect this week

Privacy advocates and virtual private network (VPN) providers are up in arms over Utah’s Senate Bill 73 (SB 73), “Online…

 

CLR Labs wins ISO 17025 accreditation for biometrics testing across EU

Cabinet Louis Reynaud (CLR Labs) has been accredited for ISO/IEC 17025, the international standard for testing and calibration laboratories, in…

 

Leidos, Idemia PS advance checkpoint modernization with biometrics, CAT-2 systems

Leidos and Idemia Public Security have formed a strategic partnership to deploy biometric‑enabled eGates and integrated Credential Authentication Technology (CAT-2)…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events