Passwordless Authen
Since the Internet was invented, users have adopted passwords to protect their privacy. However, as there are more and more service providers on the Internet, the number of passwords that everyone needs to manage has also increased. Now passwords are no longer protecting personal privacy. The safeguard may, instead, be the biggest threat to our privacy.
On the one hand, the number of passwords managed by individuals has been increasing to the extent that they are easily lost or forgotten. Hackers then use passwords to steal information or pry into privacy. According to a research report (Verizon Data Breach Investigations Report), 81% of data breaches resulted from passwords.
In recent years, many big tech companies have dismissed passwords, no longer regarding it as the main fortress. They proposed a unified standard framework to allow users to perform authentication without the need to set passwords. FIDO (Fast Identity Online) Alliance that promotes this authentication framework was established in 2012. They devised a set of open and interoperable authentication standards, expecting to protect users from the threat deriving from passwords. So far, there are more than 250 members, including the initiators such as PayPal, Infineon, Google, and Microsoft. It has become a new open standard that the entire industry continues to promote in order to meet the future trend.
IKV-Tech has successively obtained FIDO2 L1 and L2 certification for authenticators in 2021. In the world, there are only four vendors, IKV-Tech included, reaching the L2 security level. Through ODM, IKV-Tech assists companies in designing security keys that comply with FIDO2 L1 and L2. The mode of user presence adopts cognition-based and behavior-oriented “Touch Pattern” rather than fingerprint. By doing so, we considerably reduce the hardware cost but maintain the security level, which lowers the entry barrier for enterprises to deploy password-less authentication.
I. FIDO Certified Security Chip
II. FIDO Certified USB Security Key
We have successfully provided for many vendors “FIDO Certification Embedded” security chips and USB security keys. It saves our customers investment in research and development to create FIDO certified products meeting international authentication standards.
Our security chip is easy to use becasue
- it supports a variety of form factors, including the smallest SIM, microSD, USB, PCIe
- a unique hardware root is in every system for identification and authentication
- customizability enables security by design, compliance security by default
- countermeasures are implemented to tackle a wide range of security issues
- a unique 32-bit CPU based on the ARM® SecurCore™ SC300™ controller is inside
Use Case Application
FIDO Enabler - Security Chip with FIDO Inside
For vendors who intend to implement the FIDO authentication framework on hardware authenticator in any form factor, we provide the ready-to-go crypto core, allowing for FIDO-compliant asymmetric cryptographic algorithms, FIDO-certified authentication mechanism and other value-added cryptographic functions. It is compatible with fingerprint authenticators, USB security keys, security cards, etc
Why is our security chipTrustworthyReliableRobust?
Security chips own many patents, including cryptographic algorithm, tamper resistant, secure COS and sensors that detect intrusive and non-intrusive attacks. Though many companies buy intellectual properties trying to devise a SoC that equals a standard security chip, it turns out that the cost is several times higher than gains.
The absence of accelerators leads to poor performance in the encrypting process since cryptographic algorithms usually involve computing big numbers. For security concern, the accelerator functions only in the secure areas of chips to boost the overall performance of security services. Storages are likewise very important, especially for cryptographic keys and confidential information.
Means of intrusion vary with hackers’ tricks. Without appropriate design and implementation, devices are very likely to be attacked within seconds once vulnerabilities are exposed. Smart cards are an example.
The market of security chips usually involves export control; only by NDA and certification can the access be obtained, and regular inspection is also needed. Security chips available on DigiKey or Mouser have been cracked and proven extremely vulnerable.
- FIPS 140-2 Validation Certificate
- ISO 15408 Certification
- Common Criteria EAL
These three mainstream certificates cost considerably high, from hundreds of thousands of US dollars to millions.
The market of security chips is very challenging; for manufacturers, precaution and countermeasures are in any time needed to satisfy clients’ requirements in this ever changing world, so our skills should always keep up with hackers’ newest tactics. Besides internationally accredited security chips, we also localize and customize our services, such as risk assessment, cost benefit analysis (CBA) and penetration test.
Lastly, to provide robust security chips and reliable solutions, IKV-Tech collaborates with world-known manufacturer, Infineon, to resell and develop the finest security chips.