03.12.2021 Views

Cyber Defense eMagazine December Edition for 2021

Will you stay one step ahead of Cyber Scrooge this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is here...Defeat Cyber Scrooge! Cyber Defense Magazine December Edition for 2021 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG CDMG is a Carbon Negative and Inclusive Media Group.

Will you stay one step ahead of Cyber Scrooge this year? Learn new ways to protect your family, job, company & data. December Cyber Defense eMagazine: Cyber Deception Month is here...Defeat Cyber Scrooge!

Cyber Defense Magazine December Edition for 2021 in online format #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, US Editor-in-Chief, Pieruligi Paganini, International Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

See you at RSA Conference 2022 - Our 10th Year Anniversary - Our 10th Year @RSAC #RSACONFERENCE #USA - Thank you so much!!! - Team CDMG

CDMG is a Carbon Negative and Inclusive Media Group.

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

lock-in, and lets organizations take advantage of any MFA method, including the latest and safest<br />

authentication standards, such as FIDO2.<br />

The example comes from above<br />

Due to the fact that MFA is a method that effectively protects organizations against phishing and<br />

credential theft, governments of many countries around the world have also become interested in its<br />

adoption.<br />

A few months ago, on May 12, <strong>2021</strong>, there was big news in the cybersecurity world - the president Joe<br />

Biden signed an executive order to improve the nation's cybersecurity. The order called <strong>for</strong> the<br />

implementation of two-factor authentication (2FA) <strong>for</strong> the entire government within 180 days. And at<br />

September's Authenticate Virtual Summit, users, experts and vendors from around showed many case<br />

studies of how strong authentication helps with securing online identities. Participants, including<br />

representatives from the UK's National Health Service (NHS), US’s login.gov and the Internal Revenue<br />

Service (IRS), agreed that authentication and protection of digital identities is a top priority today and in<br />

the future.<br />

FIDO2 rules<br />

<strong>2021</strong> has shown that the way world governments think about MFA is fundamentally changing. The role<br />

of FIDO2, a global, open authentication standard developed by the FIDO consortium and then approved<br />

by the W3C (World Wide Web Consortium), is growing rapidly. It seems that FIDO2 authentication is no<br />

longer just yet another authentication option but it is becoming the preferred choice of many government<br />

institutions as well as private organizations.<br />

How does it look in practice? For example, the governmental Canadian Digital Service has implemented<br />

hardware security keys that support all FIDO2-based methods. The authentication process with their help<br />

is very simple - when logging in, e.g. to email, you have to enter the password and additionally<br />

authenticate by inserting the security key into the USB port and pressing a button. In case of CZ.NIC, the<br />

Czech DNS registry, also accredited by the national digital identity provider and by eIDAS mojeID,<br />

800,000 users can log in to government services based on FIDO2 from September <strong>2021</strong>. In Sweden, a<br />

digital identity system has been implemented in the educational eduID portal with support <strong>for</strong><br />

authentication using the Universal Second Factor FIDO (U2F) protocol.<br />

In the USA, the American Login.gov service is based on the FIDO2 standard as well, and in the United<br />

Kingdom the UK National Health Services Login application uses biometrics. Similar practices are<br />

followed by the Korean government - a second component, fingerprint biometrics <strong>for</strong> 14 million users -<br />

and Thailand, has a dedicated website that helps organizations set up multi-factor authentication using<br />

FIDO technology.<br />

Overall, the government's move towards MFA to provide a scalable and cost-effective <strong>for</strong>m of strong<br />

authentication is perfectly understandable. Governments and public organizations are <strong>for</strong>ced by the<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>December</strong> <strong>2021</strong> <strong>Edition</strong> 74<br />

Copyright © <strong>2021</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!