May 20, 2007

Vidoop looks to change image of sign-on

With a single sign-on system that uses grids of images to create one-time passwords, Vidoop maintains that it can revolutionize online authentication

It's a lesson that's apparent to anyone who has ever raised a child, and likely anyone who remembers what it was like to be one -- pictures are easier to remember than words.

Applied to the Internet, the concept can be used to help improve and simplify online authentication for end-users, while helping businesses bolster security and lower customer support costs, according to the minds behind Vidoop.

Launched in 2005 and set to bring its initial business products out of beta later this summer, Vidoop, based in Tulsa, Okla., is marketing a set of SSO (single-sign on) applications that use collections of randomized images to help users remember their passwords, and allow companies to add more complexity to their authentication systems.

Backed by a team of developers taken from Microsoft, the U.S. Navy, the National Institute of Standards & Technology (NIST), and a range of banking and healthcare firms, the company believes it can offer businesses a system that keeps customers happier and better protected when carrying out online transactions of almost any kind. It also offers a new type of authentication tool for remote workers.

By utilizing the system, in fact, the firm suggests it can eliminate the need for log-in passwords altogether.

"People remember visual imagery better than text, and the Number One source of calls to customer support centers are over lost passwords," said Joel Norvell, co-founder and chief executive of Vidoop. "And people are continually compromising security by taping passwords to their machines or carrying them around on paper, but anyone can remember a simple set of image categories that are interesting to them, and that's all you need to remember to use our system."

To utilize Vidoop's application, users sign up and select three picture categories from a range of different genres including cars, dogs, skyscrapers, computers, and the like.

Each time they attempt to log into a site or network supporting the tool, they are presented with a grid of twelve images, three of which represent the categories they have pre-selected.

In each image is a randomly generated, one-time access code in the form of a letter, and users simply enter the three letters corresponding to their images and are granted access to the site or IT system.

In addition, Vidoop requires that users register the devices from which they log-on via the application to further prevent the possibility of the system being compromised. The software currently works with PCs, but the company is already developing a version of the tool to be used with mobile devices.

Privately-held by a group of investors familiar with Norvell and his co-founder Luke Sontag, Vidoop's president and a former identity management specialist at J.P. Morgan, the company is going to market under two business models.

Vidoop Secure, which will be aimed at financial services companies and other businesses -- and also includes a version tailored to provide secure Web sign-on for Microsoft Exchange systems -- will be launched later this summer.

Companies using the application will run the software on their own servers. Vidoop says it already has one Fortune 500 financial services customer and 40 regional banks piloting the program.

Close

On Twitter now

Architecture

Powered by Twitter

On Twitter now

White Paper

D2D Virtual Tape Library Replication Primer

This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.

Download now »

White Paper

An Alternative to Virtualization for Datacenter Cost Savings

Server virtualization is a popular option for dealing with mounting datacenter costs. Another equally promising approach is the use of an Application Delivery Controller. Citrix NetScaler provides a low-cost way for organizations to reduce their server count and accrue cost savings from a reduction in space, cooling, power and personnel.

Download now »

White Paper

Why Your Firewall, VPN, and IEEE 802.11i Aren't Enough to Protect Your Network

The emergence of WLANs has created a new breed of security threats to enterprise networks.

Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation

Download now »

White Paper

Bringing the Edge to the Data Center

Effectively address data protection challenges, implementing solutions that help store and protect business–critical data while cutting costs and improving efficiency and reliability.

Download now »
easysecured 1-Nov-09 2:14pm

Request you to review my solution which is far more secured as it does not store any password nor does the user need to define a password or categories to sign in..

A true-blue password less user authentication solution.

http://www.easysecured.com
http://www.0pass.com

Thanks in Advance

Sign up to receive Architecture Resource Alerts

Subscribe to the Today's Headlines: First Look Newsletter

Find out what will be news for the day, with our first-thing-in-the-morning briefing.

©1994-2009 Infoworld, Inc.