Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

6/20/2013
02:56 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

Clavid Launches Authentication As A Service

Clavid enables users to combine the authentication methods that are already in place so they can use one single login to access all Internet services

ST. GALLEN, Switzerland, June 20, 2013 /PRNewswire/ --

We disclose much that is private and confidential on the Internet. That's why "Internet" and "security" go hand in hand. Recurring attacks by hackers against online shops, cloud services or social networks make it even more essential for us to provide better protection for our own data. However, many Internet services have serious weaknesses in this regard. These gaps are easy targets for hackers. But they don't have to be! Clavid is launching the solution to this problem by offering Authentication as a Service.

Picture can be downloaded under:

http://www.presseportal.ch/go2/clavid_illustration

Closing security gaps on the Internet

Various good authentication processes are available that can guarantee a high level of security and keep hackers at bay. But what use are these excellent tools if operators of online shops, cloud services or web portals fail to use them? Many Internet services simply carry on operating their unsafe login procedures - mostly consisting of a user name and password - without any clear idea of the consequences of potential abusive access. Why do they run this unacceptable risk?

The authentication services that are available saddle Internet service providers with high implementation expenses for installation and licences, as well as considerable extra logistics costs depending on whether tokens (such as USB

sticks) are also sent. At the same time, users are expected to go through a separate login procedure for each service. In the worst case, they have to carry several hardware tokens around with them. Why not choose a simpler option?

Clavid has developed a solution that eliminates the weaknesses of existing systems and makes security comfortable.

One key, access from anywhere, low costs

Clavid's innovative interface technology combines all the authentication procedures currently available on the market into one service. What we offer is unique in the world: Authentication as a Service (AaaS). Internet service providers use this simple solution from Clavid as an authentication procedure that delivers enhanced comfort and security for themselves and their customers.

At the same time, they cut their costs substantially - and their customers will also be delighted: Clavid gives them simple and secure access to all the Internet services they use. Users log into Clavid with the login method that they select personally, and then they are simply and unambiguously identified and accredited as authorised persons. No other provider anywhere in the world can currently offer such strong, simple and secure authentication.

Life made simpler and safer for private Internet users

At present, it is often the case that Internet service users can only log in with an insecure combination of a user name and a password. Most Internet services do not offer strong authentication, and private users have to keep records of numerous user names and passwords. This is impractical and complicated, and it is not secure. The same applies to service providers, because password renewals account for over 30% of IT costs. Clavid enables users to combine the authentication methods that are already in place so they can use one single login to access all Internet services - and then they can continue to surf safely.

Lower risks and costs for business customers

Clavid's Single Sign-On (as it is known) gives companies a convenient way of regulating their employees' access and user rights. Managers no longer have to bother with individual access methods for different systems and platforms.

Clavid implements the company's wishes and requirements without expenses for every single integration of a large number of services.

Cutting costs for Internet service providers

Internet companies no longer have to opt for one authentication procedure. This significantly cuts implementation costs, support expenditure and outage risks.

Now they only pay one predictable installation fee while Clavid takes care of everything else.

Reduced outlay for authentication procedure producers

Producers of authentication procedures currently incur huge costs in order to market their services to the operators of countless Internet services. Separate contracts have to be negotiated with each of them, at enormous expense. This is why the producers are eager to have a joint market presence with Clavid so that they can launch their new methods across the globe in one fell swoop.

"Swiss Privacy" makes the Internet world more secure

Clavid's innovative offering delivers benefits to private and commercial Internet users, Internet service providers and producers of authentication procedures. It makes digital identification more secure and easier to implement, and it saves time and money. Thanks to Clavid, "Swiss Privacy" - one of Switzerland's core competences - is now also available for the Internet.

Let's use Clavid the key for your safety in our digital world

About Clavid AG:

Clavid AG offers high-calibre services, solutions and products for the professional IT security environment. Our core competences focus on authentication and authorisation in the digital world.

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
Mobile Banking Malware Up 50% in First Half of 2019
Kelly Sheridan, Staff Editor, Dark Reading,  1/17/2020
7 Tips for Infosec Pros Considering A Lateral Career Move
Kelly Sheridan, Staff Editor, Dark Reading,  1/21/2020
For Mismanaged SOCs, The Price Is Not Right
Kelly Sheridan, Staff Editor, Dark Reading,  1/22/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment:   It's a PEN test of our cloud security.
Current Issue
The Year in Security: 2019
This Tech Digest provides a wrap up and overview of the year's top cybersecurity news stories. It was a year of new twists on old threats, with fears of another WannaCry-type worm and of a possible botnet army of Wi-Fi routers. But 2019 also underscored the risk of firmware and trusted security tools harboring dangerous holes that cybercriminals and nation-state hackers could readily abuse. Read more.
Flash Poll
How Enterprises are Attacking the Cybersecurity Problem
How Enterprises are Attacking the Cybersecurity Problem
Organizations have invested in a sweeping array of security technologies to address challenges associated with the growing number of cybersecurity attacks. However, the complexity involved in managing these technologies is emerging as a major problem. Read this report to find out what your peers biggest security challenges are and the technologies they are using to address them.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-18898
PUBLISHED: 2020-01-23
UNIX Symbolic Link (Symlink) Following vulnerability in the trousers package of SUSE SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allowed local attackers escalate privileges from user tss to root. This issue affects: SUSE SUSE Linux Enterprise Server 15 SP1 trousers versions prior to 0.3.14...
CVE-2019-19837
PUBLISHED: 2020-01-23
Incorrect access control in the web interface in Ruckus Wireless Unleashed through 200.7.10.102.64 allows remote information disclosure of bin/web.conf via HTTP requests.
CVE-2020-7210
PUBLISHED: 2020-01-23
Umbraco CMS 8.2.2 allows CSRF to enable/disable or delete user accounts.
CVE-2019-19835
PUBLISHED: 2020-01-23
SSRF in AjaxRestrictedCmdStat in zap in Ruckus Wireless Unleashed through 200.7.10.102.64 allows a remote denial of service via the server attribute to the tools/_rcmdstat.jsp URI.
CVE-2020-5216
PUBLISHED: 2020-01-23
In Secure Headers (RubyGem secure_headers), a directive injection vulnerability is present in versions before 3.9.0, 5.2.0, and 6.3.0. If user-supplied input was passed into append/override_content_security_policy_directives, a newline could be injected leading to limited header injection. Upon seei...