|
|
Browse by Tags
All Tags » Phishing Resistance (RSS)
-
Kim Cameron and I recorded a podcast on digital identity for MySuccessGateway this week at the invitation of Jim Peake of SpeechRep Consulting. Jim was a gracious, informed, and enthusiastic host during our conversation, which covered a wide range of digital identity topics including identity theft, shared secrets, privacy, Information Cards and the Information [...] Read More...
|
-
In May 2005, when I wrote the whitepaper “Microsoft’s Vision for an Identity Metasystem”, these sentences were aspirational: Microsoft’s implementation will be fully interoperable via WS-* protocols with other identity selector implementations, with other relying party implementations, and with other identity provider implementations.
Non-Microsoft applications will have the same ability to use "InfoCard" to manage their identities [...] Read More...
|
-
Sean Nolan, chief architect of Microsoft’s HealthVault service, posted an article about giving their users choice for the identities they use to access their information. He announced that in addition to accepting LiveIDs, HealthVault is about to start accepting OpenIDs from two OpenID Providers and is also building native Information Card support. As [...] Read More...
|
-
While gone phishing, I discovered that the use of JavaScript puts one barrier up that phishers have to overcome to impersonate a legitimate site. In a characteristically hilarious post, Paul Madsen points out that, besides having to overcome active defenses like Sxipper (“Down girl!”), phishers may also inadvertently present pages localized for their locale, [...] Read More...
|
-
Fun Communications’ site idtheft.fun.de lets you mount your very own man-in-the-middle based phishing attack against the OpenID provider of your choosing. Rather than redirecting you to the OpenID provider you specify, it instead redirects you to a page impersonating the OpenID provider, created using content scraped from the real site behind the scenes.
This is [...] Read More...
|
-
Johannes Feulner of Fun Communications recently showed me three different identity sites they’ve created, each fun and valuable in its own way. The first, www.webcard-loyalty.com , lets companies create online loyalty cards for their customers. Read More...
|
-
33 Companies…
24 Projects…
57 Participants working together to build an interoperable user-centric identity layer for the Internet!
Come join us!
Tuesday and Wednesday, April 8 and 9 at RSA 2008, Moscone Center, San Francisco, California
Location: Mezzanine Level Room 220
Interactive Working Sessions: Tuesday and Wednesday, 11am - 4pm
Demonstrations: Tuesday and Wednesday, 4pm - 6pm
Reception: Wednesday, 4pm - [...] Read More...
|
-
Today the OpenID Foundation announced that five leading technology companies, Google, IBM, Microsoft, VeriSign, and Yahoo! have joined the OpenID board of directors as its first corporate board members. This news comes a year and a day after the JanRain/Sxip Identity/Microsoft/VeriSign OpenID/CardSpace collaboration announcement introduced by Bill Gates and Craig Mundie at the RSA [...] Read More...
|
-
I was surprised during the recent blogosphere conversation on user-centric identity in the Enterprise, that no one referenced Sxip’s contemporaneous intelligently-written 2-page piece on how the use of Information Cards can help protect enterprise login credentials from being phished. Using Information Cards to enable safer remote access to hosted enterprise applications makes business sense. [...] Read More...
|
-
I’m pleased to report that ooTao and LinkSafe have recently collaborated to enable you to create and use i-names using Information Cards rather than passwords. They’ve achieved for LinkSafe.name what JanRain did for MyOpenID.com . Read More...
|
-
As Vittorio excitedly pointed out , you never have to enter a password to create or use an OpenID at MyOpenID.com . Kim’s excited about this too. So am I. Read More...
|
-
Last night OSIS and the Burton Group held the third in a series of user-centric identity Interop events where companies and projects building user-centric identity software components came together and tested the interoperation of their software together. Following on the Interops at IIW in May and Catalyst in June , the participants continued their joint work of ensuring that the identity software we’re all building works great together. Read More...
|
-
Kevin Fox just announced that JanRain has added Information Card support to MyOpenID.com. Read More...
|
|
|
|