http://www.realtimegroup.de
 
http://www.realtimegroup.de Education
  - Fraud Mitigation
  - Password Fishing
  - Technology Movies
http://www.realtimegroup.de Press
  - Press Releases
  - realtime Articles
  - Press Kits
http://www.realtimegroup.de Events
http://www.realtimegroup.de Jobs
  - Job Offers
  - Application Form
http://www.realtimegroup.de Online Demo
http://www.realtimegroup.de Contact


aa
http://www.realtimegroup.de
Sitemap
Copyright
 

 

 

Download / Print this Educational Info (PDF)

       Learn, why Passwords are insecure and...

  Show Passwords
  the Finger

      ...using biometrics

 

Did you know that it is becoming a fairly popular "sport" to video tape colleagues passwords with a cell phone? 
We didn't want to motivate you to commit fraud - therefore we have provided a video for your entertainment: 
Can you tell, what password the lady is typing?
If not - playback in slow motion will help!

Click on the image to see the video!

2007 Copyright Bromba GmbH

Everybody has Access to your DATA!!!  

Recently, the French Bank, Societe Generale, lost 7.2 Billion (Yes - Billion with a "B" due to poor IT security. A trader stole passwords from his coworkers and logged on with their user ID's to conduct trades in their names. A special committee at the French Bank has recommended the bank should immediately introduce stronger security systems, including biometric authentication, to prevent a recurrence.

Source - SAP Info Article (02/25/08): http://www.sap.info/public/INT/int/index/Category-28813c6138d029be8-int/0/articlesVersions-3038947c29f746dbbe

The white-collar crime is the fastest growing crime and co-workers and disgruntled employees have many motivations to cause damages or increase their wealth. The first thing they do before taking any illegal action is to get access to another colleague’s user profile for extended access - as demonstrated at the French Bank - so that they can blame another person if the fraud is detected. Computer have been in use since 1963 and so have passwords. Everything has changed on the computer since 1963 - except the outdated, insecure way, we are attempting to protect the access to it!

Download our "Fishing for Password" document and learn, how easy it is to get a hold of anybodies' SAP User password and profile with extended authorizations (pdf).

 

 

20 Ways to get Passwords to any SAP User Profile:

  • 82% of all passwords are written down

  • 40% of all users share passwords frequently

  • Password crackers crack 80% in 30 seconds

  • Passwords are not encrypted between computer and SAP system

  • New camera technologies - build into cell phones - can tape passwords anytime

The California State University, Fullerton has researched 20 ways to get somebody else's password. Paul Sheldon Foote, Ph.D., Professor of Accounting at the University is leading the research project and has been featured in an SAP TV movie about Sarbanes-Oxley and Pete Gunn in a movie about bioLock at NASA (Link to movies).

 Paul Sheldon Foote
Professor of Accounting, California State University

Kenneth "Pete" Gunn
Director Safety and Security, Florida Space Authority

Prof. Paul Sheldon Foote about Passwords:

Kenneth "Pete" Gunn about Passwords:

"Finding passwords on a person's desk, telephoning to ask for a password, packet sniffing, phishing, spoofed (fraudulent) websites, phone phishing, pharming, and vishing are only some of the successful techniques for password fraud.  The end of an era of corporate contributory negligence will arrive when corporate leaders accept the responsibility of implementing multiple biometric authentication protocols."

"Seize the moment and go forward with biometric technology. That is the way of the future, because current systems where you have to develop a pin or a password - that is too expensive and too cumbersome and it is a major weak spot in the security makeup."

 

Download the Fishing for Password document to learn how dangerous passwords really are (pdf). 

View other security comments from Pete Gunn, Paul Foote and other industry experts in a 2 minute movie clip (wmv). 

 

 

Allow us to educate your team further:

 

Please contact us for any questions and to schedule a personalized, educational demonstration of our biometric identity management solution, bioLock, for your team.

 

Contact us: Intl. +1-813-283-0070, Toll Free 1-877-bioLock or Email: Info@bioLock.us

 

 

Download this information as PDF and share it with your
auditors, compliance, security and business teams (pdf)

 



© realtime North America Inc., Tampa/Florida. All Rights Reserved.

http://www.realtimegroup.de

SAP WebEx Invite:
SAP Banking and Financial Services invite for bioLock WebEx
(link)
SAP promotes bioLock to their financial customers as extra security measures

BASF and Polk County Schools speaking at Administration and Infrastructure(link)
BASF is speaking about APM and The Polk County School District is speaking about bioLock in Orlando Mar. 26-28

Shocking Study:
There is NO compliance without biometrics!
(link)
Your Company might be compliant, but you are still exposed to fraud!
Compliance study from the California State University

Cal State Fullerton introduces bioLock
to class rooms
The California State University has integrated bioLock in their curriculum and will present at the SAP University Alliance Congress about bioLock in the class room

SAP, Sarbanes-Oxley, HIPAA,SAP TV Sarbanes Oxley biometrics SAP NetWeaver California Act, SB1386, SOX, biometrics, fingerprint, single sign on, identity management, security, mandatory regulation, secure logon, access control, password, log file, proof, uniquely identified, Thomas Neudenberger, Paul Foote, University California, Fullerton, Brevard County, NASA, user authentication, password authentication, password fishing, phising, sap authorization approach, show password the finger, show passwords the finger, showpasswordsthefinger, showpasswordthefinger, fraud mitigation, risk assessment, apo, architecture, art, auto, business, crm, erp, height, infrastructure, org, soa, SOA solution style, outsourcing, password fishing, authorization, authorizations, phishing