FB pixel

COVID-19 crisis emphasizes importance of a passwordless future, WEF says

Categories Access Control  |  Biometrics News
 

COVID-19 crisis emphasizes importance of a passwordless future

Dependency on the internet, digital infrastructures and remote work amid the coronavirus outbreak have created a perfect opportunity for online criminal activity to increase, warns the World Economic Forum (WEF). As criminals have been successfully manipulating COVID-19-related information to launch attacks, the organization points out there is no better time like the present to get rid of passwords and go passwordless with technologies like biometrics to verify user identity.

By adopting technologies such as biometrics, behavior analytics and device attributes, passwords, usernames, SMS and other less secure methods could be phased out. Passwordless authentication reduces security and compromised credential risks, the organization explains.

According to a recent World Economic Forum report, implementing a passwordless strategy would boost security, as companies would be less exposed to data breaches, and reduce business costs caused by password management and data breaches. It could also enable digital transformation by reducing friction and improving regulatory compliance, and increase the usability of biometrics, for example, which could be used to log in to other systems and products.

To deploy passwordless authentication across an entire company, businesses have to make sure they can remove passwords and credential-based solutions completely and integrate the strategy with all interfaces and systems. This could allow authentication that supports protocols such as Security Assertion Markup Language (SAML) and OpenID Connect (OIDC) for data authentication exchange.

WEF names five key areas where companies could start implementing passwordless technology: VPN and remote access could have static credentials removed, contact and information technology by getting rid of password resets and account lockouts, remote desktop and virtual desktop infrastructure (VDI), customer identity and access management, and critical applications.

Password and credential theft has ranked as a top vulnerability, which has turned it into a critical component of any corporate policy to secure digital infrastructures and reduce risks. Methods such as two-factor authentication (2FA) which uses SMS, one-time passwords (OTPs) and hardware tokens do not increase security because they are layers to an existent system based on usernames and passwords.

Onfido is the latest biometric company to join WEF’s efforts to develop a passwordless future.

This month, WEF published a white paper describing in detail its proposed biometrics-backed paperless international travel concept, called Known Traveller Digital Identity, a limited pilot project involving travel between Canada and the Netherlands.

Related Posts

Article Topics

 |   |   |   |   |   |   | 

Latest Biometrics News

 

Google Wallet supports Aadhaar verifiable credentials in India

Google has added support for Aadhaar Verifiable Credentials in India, allowing users to store and present their digital Aadhaar ID…

 

India scales farmer ID system for payments with KPMG support

The India office of influential accounting firm KPMG has explained how it supported the advancement of the country’s Digital Agriculture…

 

Digital ID systems fail migrants due to policy gaps, Caribou finds

A new report by research organization Caribou has warned that digital ID systems around the world have continued to deepen…

 

Hopae launches eIDAS 2.0, AMLR onboarding readiness tool

Hopae has launched a free self-assessment tool to help financial institutions offering customer onboarding and identity verification to evaluate their…

 

Certainty vs flexibility – does the UK need a Biometric Surveillance Act?

By Professor Fraser Sampson, former UK Biometrics & Surveillance Camera Commissioner Last week London became a city of two tales. Two…

 

TestMu AI releases testing tool for agent-produced code

TestMu AI (formerly LambdaTest) has launched Kane CLI, “a new browser automation tool that runs directly from the terminal,” and…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events