Category: Identity management systems
Facebook has ported a security feature and anti-cyberbullying tool to m.facebook.com from its web interface. The enhanced password reset feature allows mobile users to have a new password sent to an email address or phone number if they can verify their identity. Social reporting lets users contact the owner of objectionable content, such as an embarrassing photo of them, and ask them to delete it. Facebook is slowly rolling out the features to m.facebook.com, and plans to add them to its native mobile apps such as Facebook for iPhone and Android soon.Continue
What's the difference between Live Free or Die style independence and acting like Lady Gaga posturing in a dress made of meat? It could be economic viability, if you're a tech startup.Continue
Add Identity as a Service to cloud-based services, thanks to an announcement this week from Radiant Logic at the Burton/Gartner Catalyst conference. Radiant had previously announced its RadiantOne Cloud Federation Services earlier this year, and CFS is now available, along with a new product called Virtual Directory Server Plus. Continue
We have written earlier this summer about the need for two-factor authentication solutions in the wake of various hacking scandals with compromised account sign-ons. A new solution from Confident Technologies called Multifactor Authentication is now available that makes two-factor as easy as clicking on a sequence of images on your smartphone. For those of us that are numerically challenged, it is an intriguing idea.Continue
The recent security breach at Citibank, coupled with even RSA hiring what may be its first Chief Security Officer Edward Schwartz, point out that you can never be too paranoid about your personal and corporate data security. RSA was in the news earlier this year for an attach on its SecurID two-factor tokens, something that had been considered the ultimate in enterprise security.Continue
Facebook has sent an email to what it calls a “very small percentage of the developer community” informing them their apps are suspected of leaking authentication data to third parties, and that they have 48 hours to fix the leaks or be subject to enforcement. They can become compliant by switching to OAuth 2.0, or by adding an interstitial page the removes the authentication data as a stop gap before the mandatory migration to OAuth 2.0 on September 1st.Continue
This morning, Facebook launched a new feature called "login approvals," which offers users the ability to further secure access to their Facebook account through the introduction of a second step to the login process. Once opted-in to this security feature, users enter in their email address and password as usual, but will then receive a second code sent to them on their mobile phone. This short, numeric code must also be entered before being able to access Facebook from that computer.Continue