Biometrics curing password headaches

And boy do we hate PA55w0RD5...

By Will Sturgeon, 28 September 2005 15:35

NEWS A growing number of large end-user organisations are making the switch to biometrics-based solutions to overcome the perennial problems users continue to have with passwords.

Barclaycard and Mitsubishi Securities are just two organisations which have recently revealed the move to biometric solutions such as fingerprint readers on computer keyboards.

Speaking at the silicon.com CIO Forum, Graham Yellowley, IT director at Mitsubishi Securities, told delegates: "We're using biometrics on our trading floor. People across the organisation have about 12 passwords to remember so a single sign-on biometric keyboard has proven very popular."

Gary Edwards, CIO at Barclaycard, said: "All 8,000 of our end users use biometrics for access to internal systems."

And research out this week from identity and access management firm RSA reveals the extent to which users are still struggling with the basics of password management.

The company surveyed 1,700 enterprise end users in the US and found that more than a quarter of respondents manage more than 13 passwords at work. Unsurprisingly the survey also found that 88 per cent of respondents are frustrated with password management.

And this frustration is manifesting itself in practices that may jeopardise corporate security such as writing down passwords or saving them locally on a spreadsheet or document.

A quarter of respondents said they keep their passwords saved in plain text on their PC while a similar number (22 per cent) said they save a list of passwords on a handheld device such as their PDA. A worrying 15 per cent said they keep a list of passwords written down on a piece of paper on or around their workstation.

And the frustration of end users is mirrored in their support staff who are wasting time and money resetting passwords and unlocking machines. Lost time due to password problems is also costing companies dearly.

A fifth of respondents said it takes between six and 15 minutes for IT to resolve a password related problem, while 17 per cent said it takes more than 16 minutes.

Comments

There are 4 comments. Join the discussion

  1. 1. Graham Coles

    What of the 100% of people using biometric readers who leave their fingerprints all over the desk, mouse and monitor, which basically amounts to the same thing ...

    Smart cards would be the obvious improvement here, yet don't appear to have got a mention.

    Why do people think that using a solution that relies on a public, non-changing value (i.e. fingerprint) is so much better. It might be more convenient, but so is allowing people to log in without a password.

  2. 2. Michael Fischer

    Finger Hackers?? - Will the media in five years time use 'hacker' to identify those who remove body parts for fradulant bio-metric identification?

  3. 3. anonymous too

    Having written many technical & commercial proposals for replacing passwords, I can state from experience that the major obstacle is not tech or costs (a chimp could justify the expenditure), but a willingness for the job to be done in the first place- talk about dragging a horse to water!

  4. 4. Leif Courtenay

    Nice idea but this wouldn't work - most reputable biometric solutions will only authenticate a user if it detects an electromagnetic charge and this is only present in living beings.

Post your comment

In order to post a comment you need to be registered and logged in.

Log in or create your silicon.com account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ