Made4Biz Security Inc - IdentiWall

 

Made4Biz IDentiWall provides a theft-proof authorization layer that also alerts victims to ongoing attempts to use stolen identifies.

 

Features and Functions

SMS Based Authorization

Login requires an additional one-time password that is sent to the user over their cellphone, after the user enters a PIN code.

Theft-Proof protection

Identity thieves who use Trojan horses to steal ID information of users can't know the unique password generated and sent via SMS.

Take it With You Token

The use of the cellphone, rather than a separate token, ensures that the device will be with the user when they need it.

Theft Warning

If anyone tries to log-in, whether it is the user or a thief, the user will get an SMS. They can use this information to instruct the system to deny access.

Easy Integration

Can be used over any Web authorization system for e-commerce and other secure log-in applications.

How it works

IDentiWall web is a multi level authentication service for restricted web sites that require user authentication by User-ID and password during the login process.

 Popular examples of such sites are those of internet banking, securities trading, sales sites, government sites and many others.

The user who wishes to log onto their account, keys in the User-ID and password and submits the page to the site’s IDentiWall, which is placed in front of the site, gets the login request and sends back to the user an HTML window, that requests the user to enter a One Time Password (OTP) which IDentiWall had previously sent directly to the user’s mobile phone via SMS.

The OTP that the user keys in the HTML form gets checked by IDentiWall and if found compatible with the OTP that was sent to the user, IDentiWall passes the login request to the web site for further processing.

Since IDentiWall functions as an html firewall, it can detect that the user surfed to a protected page such as a funds transfer page, and if so, perform an extra secured authentication before authorizing the transfer.

The IDentiWall service increases the security level of sensitive transactions and fights the criminal tide of identity thieves who increase their activity on the net.

Attactive as it is, implementing IDentiWall does not require any changes in the existing web site’s code. Furthermore, it does not require any software or hardware  installation on the user’s computer.

IDentiWall’s contribution to the overall security is better appreciated if you understand that an unauthorized login attempt by a third party will send an SMS to the user's cellphone. That means that the user is actually informed  that a fraudulent attempt to log on to their account is taking place. When this happens, the pro-active response option of IDentiWall kicks in and allows the user to send back to IDentiWall an SMS that will result in IDentiWall’s quarantine of the user’s account from online access.

IDentiWall features

  • Multi factor strong authentication

In cases of deperimeterization, strong authentication is a must. IDentiWall provides a multi-factor authentication which is based on the most widely common used device; the mobile phone. Never before remote login was so secured and so easy. With IDentiWall there is no need in caring around cumbersome token devices which are putting extra maintenance burden on the organization. 

  • The recording server

IDentiWall is designed with a policy-based recording server whenever a restricted web site’s access is part of its implementation. Online banking sessions can be fully or partially recorded for further auditing or investigations.

A simple-to-use browser-based replay program enables the organization to get step-by-step replay for various needs.

  • The AAA server

The Authentication, Authorization and Auditing server (AAA) is also part of the IDentiWall solution. This server goes over and beyond any other available AAA server technology and it’s designed to support state-of-the-art methods such as Voice Identification and others.

  • The messaging server

IDentiWall is designed to communicate using a number of diverse methods such as:

    • SMS
    • MMS
    • IM
    • LDAP
    • SNMP
    • Voice
    • Others…
  • The behavioral server

Situated in front of the web site and screening all HTTP Communication that goes through it, IDentiWall can also deploy its own Behavioral server which follows up any deviation from the user’s normal pattern of behavior. In case any such deviation was found, it can execute a pre-defined policy via Dynamic! Security.

  • The mobile advertisement server

A typical implementation of IDentiWall sends One-Time-Passwords to the user via Secured SMS. Such SMS can be charged to the sender account or collect to the receiver account. The receiver account can be a cellular account or any other account such as SkyPE and others.

Alternatively, the user can agree to exchange security SMSs with advertisement SMSs. In such case he will get two commercial SMSs for each security SMS paid by IDentiWall.

  • Secured e-Shopping

IDentiWall supports a hacking and phishing-proof new e-shopping method.

We will be happy to provide further details upon signature of a non-disclosure agreement.

IDentiWall versus other solutions:

The seven A comparison

Smartcard

Or Token

IDentiWall

Always with

Studies show that people find out that the mobile phone is lost/stolen/forgotten within an average of 20 minutes.

No

Yes

Always serviced

24x7 service available by the cellular companies and in case of loss can be inactivated immediately

No

Yes

Always informed

By getting the One-Time-Password (OTP) at their mobile phone, the user understands that a criminal identity theft, his identity, is going on.

No

Yes

Always Empowered

The user's ability to actually do something with the information about the identity theft in action that takes place

No

Yes

All-in-One

The convenience of traveling without the necessity of carrying around multiple devices just to being able to enter the organizational network or the banking web site.

 

No

 

Yes

Autonomous yet pervasive

The ability to perform multi level authentication, within the login procedure as well as within the application itself, without touching or tampering with the application.

 

No

 

Yes

All Computers

Solution that works without a pre installation requirement on the client PC.

No

Yes

More about IDentiWall

IDentiWall Architecture - This schema will help you understand what IDentiWall does and how it does it

IDentiWall Technology - This table outlines the sophisticated technologies underlying IDentiWall

IDentiWall versus Smartcards and Tokens - How does IDentiWall measure up against other types of solutions?

IDentiWall versus in-house development - Read this before you try to develop your own system - don't say we didn't warn you!

IDentiWall Authentication

Strong Authentication

Transaction Verification

IDentiWall Solutions

Restricted web site solution

Secure ebanking solution

IDentiWall for Insurance Companies

Firewall/VPN port management

IDentiWall Products

IDentiWall VPN

IDentiWall Citrix

IDentiWall Wi-Fi

IDentiWall Web mail

IDentiWall Web

IDentiWall Non-Repudiation

IDentiWall eBanking

IDentiWall Student

IDentiWall Pay-as-you-Go

IDentiWall Brochures

IDentiWall Secure e-Banking

IDentiWall versus Do-it-Yourself Security Software

Visit the IDentiWall - Secure Online Financial Transactions Web Site

 

 

Home - Dynamic Security | Privacy Policy | Copyright and Trademark Info