Skip to navigation
   
Simon Bisson & Mary Branscombe's Blog

The iPhone identity selector Apple won’t care about

By Simon Bisson & Mary Branscombe in Editorial

Posted in Identity, smartphone, Security, Internet, Microsoft, Mobile, Apple on November 15, 2008 at 11:26 pm

Permalink | Author Profile

On a smartphone, passwords are even more irritating than ever, especially on a soft keyboard that’s so sure it knows what you want to type that the default is to correct what you actually wrote. That’s only a trimester if the phone has as big a vocabulary as you do.

For instance, when I started writing this on my Samsung Blackjack II with xt9, what I typed in the previous sentence was ‘timesaver’ - before xt9 ‘ corrected’ it… xt9 gives you the option to stick with your actual typing as long as you notice the change and the equally aggressive correction on the iPhone does the same (though I’ve never managed it myself), but it’s one more way that passwords are more likely to trip you up than keep you secure. Let alone that the UK now has the worst information theft figures in Europe, even though the French have the least secure passwords.

Switching to information cards where claims like who I am and whether I’m over 18 are encrypted, hashed and sent on demand to replace simple username and password makes logging on simpler and more secure, and makes it possible to add extra authentication. After complaining about Microsoft not issuing secure ‘managed’ cards I’ve been told to wait a few days for a major announcement; it might be the Equifax over-18 I-card service https://equifaxicards.com/imover/overview.do (only for the US at the moment, but it’s the first major public verified information card and it will soon be followed by cards to prove your credit rating, contact details or membership).

So that leaves getting sites and services to accept information cards - and being able to use them on any computer. They’re built into Vista, Windows 7 and any PC with IE7, plus there are open source plugins for Firefox and Safari.

12345
Rated: 100% (1 votes)
Loading ... Loading ...

Previous Post | Next Post

 
 
Comments

Comment by Charles Andres - May 1, 2009 on 6:58 pm

Apple may not care about InfoCards, but on the iphone, the browser is controlled by Apple, and there is no way currently to download an identity selector without ‘jailbreaking’ the iphone, which effectively voids the warranty. Apple will need to make a stand on this at some point.

Make a comment

* required

* required

We stop spam using reCaptcha.
Type the words below and click Submit Comment.

   
Tag cloud

i-mate Tablet PC 2.0 Nokia beta people Jeff Hawkins Windows Live task bar screencam desktop. PC RSA 2008 backhaul CTO Nuance office IDF Asus HMT National Insurance Large Hadron Collider TouchSmart Loki public cloud MAX greenplum pgp business intelligence database police performance dual boot Previous Versions benchmark web2expo Dell Windows Mobile christmas vmware licensing upgrade MacWorld 2008 pre-boot netbook Hugh Thompson credit crunch machine learning UMPC evernote Internet developer downturn SKU ClipMate Wyse battery life ADFS 2.0 Itanium security theatre RBL ubuntu Corsair ballmerbot AMD city Netscan web 2.0 expo instant messaging october DisplayLink Ruby interoperability tele atlas multiple monitors green IT CPU android Opsware transcoding voice eu visualisation tennis Wimbledon anti-virus Internet Explorer 8 parallel computing Verbatim mysql Windows 7 vs Windows Vista Sony IO cracking Trampoline Google Spreadsheets Toshiba Portege R500 Palladium ipv6 security ucsd M&A Motorola legislation IM Windows Server hp microsoft research Dopplr open source business continuity virus Enterprise 2.0 co-processor appzero cellcrypt infrastructure OQO toshiba mobile network consolidation ipsec Google IO wes flex isp MIX monitor Pal SMB 2 netbooks GPU claims netiquette nvision08 Numenta mobile NVIDIA designer todo list moscow Beacon IT transformation HTC SSD user interface Skyfire installation international roaming Linux RIM target lawsuit cisco innovation g-2 forensics Xen accelerator goview competition DLP mobile Linux wubi Mark Hurd congestion charge Seagate NAS fault quiz Active Directory Web 2.0 disaster recovery radeon aws Acrobat Pro Microsoft routing maps SP1 hyper-v mms 2009 IT policy hold music mapping HTML 5 processors vulnerabilities d2c Jeff Jones Internet Explorer pen computing Google iPhone support it pro AuthenTec Treo Pro secure disk workflow digital signature ports SapphireSteel DSL CERN O2 MRDA .NET etech thermo rc WWW adfs insert SIM Firefox data centre transformation identity theft conference no signal Bill Cheswick usb productivity g-1 smartphone GPS enterprise architecture dual display gamer email telecoms cam whitelist OpenID ANR RAZR applications catalyst navigation web Trolltech Vodafone open augmented reality T-Mobile Mono MING education bombe beta test Palm WPF flash OFCOM firewall Frauenhofer macbook data centre Express Gate screen streaming media Xobni mobile data tariffs isps keyboard office politics IIW2008b TSA regulations fire mainframe private cloud yahoo Ruby On Rails history Salesforce bug teched green printing social networking ruggedized enterprise Eee PC fingerprint display mobile ofcom network IT automation exabytes lost server windows 7 privacy Gartner uninstall storage Girl Geek Dinners power saving EEE VSSAdmin business model business technology automation Opera Barracuda mash-up software laptop BitLocker power supply offload terabytes windows server 2008 r2 Google Sets hacking oracle Live Mesh MWC Delphi disk space Fire Eagle cosmic rays encryption rtm cables TechEd 2008 Trend Micro robot Crossfader ontier future in review Gears rich client optical interconnects geocaching patch Tuesday culture Ray Ozzie Tombstone Objects Lenovo Safari exchange analytics bletchley park Facebook high performance computing NGSCB mythbusters fingerprint scanner 64-bit wireless USB wifi 2009 Credentica microsoft research CardSpace virtualisation logitech wildfire BT Windows Server 2008 3G training CES phone settings mobility london Magny-Cours deborah adler cold fusion politics wave active digitiser control panel codec docking station colossus advertising geek tourism WinHEC Tripit Tom Hogan power Ask.com merger Vista Istanbul xT9 fibre MacBook Air macro winhec2008 Reqall magic geneva OEM hdmi system center WEI ATI server sprawl utility HSDPA 965 how do I get the back off? patent voice recognition cloud service google online applications phone management SBS LHC virtual desktop images Opteron CUDA case RIA demo09 relocation troubleshooting management media center cloud migration Mercury hierarchical temporal memory numbers acquisitions html bandwidth Bill Gates utilities spam fighting IBM trends Clear RX power cuts remove back BlackBerry Apple design service oriented enterprise electricity price Hp 2710p distributed computing Secunia SSVAGENT.EXE Embarcadero regulation citrix data Mozilla icons spam AdaLovelaceDay09 network windows Quest data loss server national museum of computing accessories ultraportable market share ProCurve NexT venture capital camera Moonlight lockdown Greasemoneky mobile working annotation geotagging traffic connectivity deperimeterization business technology optimisation O'Reilly installer biometrics QWERTY development twitter T9 information cards Location user experience direct access hard drive timezones RSS search amazon BES business system management LiveID CIO identity metasystem EMC project Mini-Note Adobe gameboard Silverlight switch anti-patterns collaboration community bea amherst mscape natural interface Intel gaming IT value AskEraser griffin data tariff turing identitity dvi Tablet Kiosk TNT demo MIX08 social engineering Netscape information ec2 BBC media cloud computing flash drive security paradox pixetell hardware bbc iplayer navteq video Tim Berners-Lee calit2 Volume Shadow Copy HP safend Chrome p2v networks browser sun Visual Studio drivers conferences thin client outlook
Advertisement
Advertisement