Chapter 14. Secure Identity
Poor authentication is the leitmotif of Internet insecurity: Alice is not sure she is really dealing with her bank, and the bank is not sure it is really dealing with Alice.
Reducing the probability that Alice will be tricked into giving her password to an attacker is good, but an authentication credential that Alice is unable to give away is better.
Today, we use passwords for practically every type of Internet transaction regardless of risk; whether we are reading an online newspaper or trading stock, and despite knowing that they provide terrible security and have significant hidden costs.
No end of new authentication technologies has been developed over the past 20 years: smartcards, smart tokens, fingerprint and ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access