Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - How Password Pitfalls Are Paving a New Path For Security
News & Analysis

How Password Pitfalls Are Paving a New Path For Security

ISBuzz TeamBy ISBuzz TeamAugust 15, 20165 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Richard Parris, CEO of digital identity expert Intercede, explores how recent high-profile cyberattacks have created an urgent need for service providers to find a new, more effective approach to security

When we leave the house in the morning, we close the windows and lock the doors. We worry that, in our absence, someone might be able to get into our homes and steal our personal items.  We want to protect what we value, and that means keeping anyone we don’t know out of our private space and their hands off our things. But why are we not able to take the same approach to security in the online realm?

The media continues to be awash with hack this and breach that. LinkedIn, O2, TalkTalk – even social media tsar Mark Zuckerberg himself – all fell victim to online attacks, as opportunistic cybercriminals siphoned off a wealth of personal data to be sold to the highest bidder. In most of these instances, the problem has been the old username/password paradigm; the equivalent of putting your door on the latch rather than locking it with a deadbolt – it’s closed, but not quite completely locked. This has subsequently caused unease among consumers, who are fast losing faith with how businesses are protecting their digital identities – they want better protection but service providers are failing to deliver. Indeed, research we commissioned in 2015 indicated more than 95 per cent of UK and US millennials believe their personal data is unsafe and not adequately protected by current security methods.

This failure to protect and serve the consumer has led the industry to a crossroads: continue down the same road, and risk losing customers and revenues in the process. Or pave a new proactive path for security where consumers can begin to trust service providers again.

In security we trust

To remain profitable and operational in today’s digital economy, businesses need to ditch easily circumnavigated usernames and passwords and implement new security methods that are more proactive, secure and resilient. Analyst firm Gartner predicted there will be 20 billion connected ‘IoT devices’ in the world by 2020. The world and its people, places and products are now more hyper-connected than ever before. Failure to effectively secure the online ecosystem today will risk the future of innovation tomorrow. Without security methods we can trust, consumers could cease to use the online services that make up most corporate and personal interactions today. But what does digital trust look like, and how will it become integral to the future of security?

Regaining digital trust with ‘Silicon-to-Services’ security

Digital trust is accomplished by following the process of Identify – Trust – Connect. This means identifying and authenticating people, businesses and devices in the first instance, before trusting and providing them with access to valued resources: be that data, a network, a system, or entrance to a building.

This premise forms the basis of a new method of security – Silicon-to-Services – that sees protection weaved into the fabric of each layer of technology. Silicon-to-Services joins the dots between all stages of the digital relationship, from silicon chips used to power our devices, to the user, the device itself, the connections and services they utilise, apps used and locations where data is stored.

The Silicon-to-Services ecosystem is embedded into devices and systems at the point of manufacture, enabling computers, smartphones and IoT devices to use a basic but secure cryptographic functionality already present in the large majority of silicon processors. By building a trust and key management infrastructure into silicon chips at the point of design, they are then shipped as ‘trust-ready.’ Once the chip is ready to use, only secure services within the cloud must be used to ‘personalise’ the silicon – enabling specific security technology and features. Consequently, the chip becomes ‘trust-enabled’ and is ready to be securely implemented in adherence with the service provider’s own policies.

The next-generation of security

A Silicon-to-Services security approach has the ability to transform the industry for the better. It’s an ecosystem evolved from standards already in place, rather than creating new ones that could be harder to implement. The result is mutually beneficial to businesses, service providers and consumers alike. For example, growth and adoption of the approach will lead to improved consumer experiences through increased privacy and safer transactions.  Service providers will also be able to generate new revenue streams as infrastructure costs are reduced and the risks of fraud or data breaches are lowered.

Building a brighter digital economy

When it comes to online security, businesses need to urgently change tack if they want to flourish in today’s digital economy. Investment needs to be placed in more proactive cyber defence methods, that are resistant in structure and design and ensure that only trusted people, devices and applications are gaining access to valuable information and assets.

By harnessing the Silicon-to-Services approach, consumers can continue to enjoy innovation, safe in the knowledge that their internet service provider, online retailer or bank won’t be the next victim of an attack that sees their personal data shared with prying eyes. The time is now for businesses to act before they become the next cautionary tale of a password blunder or embarrassing data breach.

[su_box title=”About Richard Parris” style=”noise” box_color=”#336588″][short_info id=’70936′ desc=”true” all=”false”][/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

The Real Cost of Inconsistent Third-Party Access

December 18, 20255 Mins Read

What Happens When Devices Cross Borders? The Role of Geofencing in Global IT

August 7, 20256 Mins Read

The Evolving Importance of Identity Governance in FinTech

July 10, 20258 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}