Hackers tackle secure ID tokens Skip to main content

Hackers tackle secure ID tokens

SecurID token, RSA The SecurID tokens are widely used to grant access to sensitive information

Related Stories

Hackers have stolen data about the security tokens used by millions of people to protect access to bank accounts and corporate networks.
RSA Security told customers about the "extremely sophisticated cyber attack" in an open letter posted online.
The company is providing "immediate remediation" advice to customers to limit the impact of the theft
It also recommended customers take steps, such as hardening password policies, to help protect themselves.
Proof positive In the open letter, written by RSA boss Art Coviello, the company said that the data stolen would not help a "direct" attack on the the SecurID tokens.
It did not disclose exactly what had been purloined and only said that the information "specifically related to RSA's SecurID two-factor authentication products".
RSA's SecurID tokens are used by millions of people alongside passwords to beef up security.
As its name suggests, two-factor authentication involves improving security using two methods of identifying a user. The first factor is usually the traditional login ID and password combination.
The second factor can be a SecurID token that is paired with back-end software that generates a new six digit number every minute.
A token paired with this software generates the same numbers so only the holder will be able to type in the right digits and get access.
RSA said the information stolen could reduce the effectiveness of this two-factor authentication system if a company came under a broader attack by malicious hackers.
This could potentially put a lot of people at risk as RSA claims to have millions of people using its security technology to secure online accounts and access to corporate systems.
RSA recommended that firms monitor social network sites to spot if hackers were trying to capitalise on what they now know about RSA's systems.
This could be because hackers have got information about who has which token and might try to exploit that to trick employees into giving them access.
RSA also recommended reminding users about the dangers of responding to suspicious e-mails, to limit who can access critical infrastructure systems and to reinforce all policies surrounding SecurID token use.
There could be "tremendous repercussions" if criminals piggy-backed on what they know to stealthily get at corporate and other critical systems, said Richard Stiennon, chief research analyst at security firm IT-Harvest.
"You'd never have a sign that you've been breached," he said.

http://www.bbc.co.uk/news/technology-12784491

Comments

Popular posts from this blog

Chronology of the Press in Burma

1836 – 1846 * During this period the first English-language newspaper was launched under British-ruled Tenasserim, southern  Burma . The first ethnic Karen-language and Burmese-language newspapers also appear in this period.     March 3, 1836 —The first English-language newspaper,  The Maulmain Chronicle , appears in the city of Moulmein in British-ruled Tenasserim. The paper, first published by a British official named E.A. Blundell, continued up until the 1950s. September 1842 —Tavoy’s  Hsa-tu-gaw  (the  Morning Star ), a monthly publication in the Karen-language of  Sgaw ,  is established by the Baptist mission. It is the first ethnic language newspaper. Circulation reached about three hundred until its publication ceased in 1849. January 1843 —The Baptist mission publishes a monthly newspaper, the Christian  Dhamma  Thadinsa  (the  Religious Herald ), in Moulmein. Supposedly the first Burmese-language newspaper, it continued up until the first year of the second Angl

Thai penis whitening trend raises eyebrows

Image copyright LELUXHOSPITAL Image caption Authorities warn the procedure could be quite painful A supposed trend of penis whitening has captivated Thailand in recent days and left it asking if the country's beauty industry is taking things too far. Skin whitening is nothing new in many Asian countries, where darker skin is often associated with outdoor labour, therefore, being poorer. But even so, when a clip of a clinic's latest intriguing procedure was posted online, it quickly went viral. Thailand's health ministry has since issued a warning over the procedure. The BBC Thai service spoke to one patient who had undergone the treatment, who told them: "I wanted to feel more confident in my swimming briefs". The 30-year-old said his first session of several was two months ago, and he had since seen a definite change in the shade. 'What for?' The original Facebook post from the clinic offering the treatment, which uses lasers to break do

Is 160 enough? One Indian man's family

By Sumnima Udas , CNN October 31, 2011 -- Updated 0857 GMT (1657 HKT) Ziona, center, with his has 39 wives, 86 children and 35 grandchildren in rural Baktwang village, India. STORY HIGHLIGHTS One man in India is the patriarch of a family of 160 in rural India Ziona, who only goes by his first name, has 39 wives, 86 children and 35 grandchildren. Ziona's father, Chana, founded the Christian sect in Baktwang that promotes polygamy "I never wanted to get married but that's the path God has chosen for me" Mizoram, India (CNN) -- The world's population hits 7 billion this week, but Ziona, the patriarch of what may be the biggest family in the world, is not bothered. "I don't care about overpopulation in India ... I believe God has chosen us to be like this (have big families). Those who are born into this family don't want to leave this tradition so we just keep growing and growing," he says with a smile. Ziona, who only goes by his f