December 18, 2017 By Larry Loeb 2 min read

A recent study has found that consumers are aware of, and are favorably disposed to, authentication methods that don’t include traditional passwords. Sponsored by Visa and conducted by AYTM Market Research, the survey of 1,000 U.S. consumers revealed that biometric authentication methods top the list of preferred password alternatives.

Smartphones Give Way to Smarter Authentication

The shift to smaller devices such as smartphones likely has a lot to do with this. Authentication methods such as fingerprint, facial and voice recognition are easier to use on the smaller screen space of a mobile device, while the devices themselves now have enough computing power to enable the use of such technology.

Mark Nelsen, senior vice president of risk and authentication products at Visa, told Help Net Security, “Advances in mobile device features are increasing the accuracy and speed of biometrics, such that they can be used for financial transactions. At the same time, consumers are widely familiar and comfortable with using biometrics for more than just unlocking their phones.”

Biometrics can help solve a common problem among users: password reuse. According to the study, consumers’ poor password behavior fits what has generally been known. For instance, less than a third of respondents have a unique password for each of their accounts, which represents a security risk.

The Consumer Demand for Biometric Authentication

The Visa study found that 86 percent of consumers are interested in using biometrics to verify their identity or to make payments. More than 65 percent reported that they are already familiar with employing biometrics.

Respondents had a generally positive view of the technology: 70 percent believe biometrics are easier to use than a password or PIN, and 61 percent believe biometric authentication is faster. Consumers also felt that use of biometric technology was a positive addition to security, with 46 percent of the belief that they are more secure using biometrics than using a password or a PIN.

Fingerprints were the most-used biometric recognition technique by consumers. Thirty percent said they had used it once or twice in the past, while another 35 percent said they use it regularly. In contrast, 32 percent of respondents have used voice recognition in the past, but only 9 percent said they routinely use it to authenticate.

Consumers are loud and clear: They want alternatives to traditional passwords. It’s now up to security professionals to provide them in a manner that is both secure and intuitive.

More from

SoaPy: Stealthy enumeration of Active Directory environments through ADWS

10 min read - Introduction Over time, both targeted and large-scale enumeration of Active Directory (AD) environments have become increasingly detected due to modern defensive solutions. During our internship at X-Force Red this past summer, we noticed FalconForce’s SOAPHound was becoming popular for enumerating Active Directory environments. This tool brought a new perspective to Active Directory enumeration by performing collection via Active Directory Web Services (ADWS) instead of directly through Lightweight Directory Access Protocol (LDAP) as other AD enumeration tools had in the past.…

Smoltalk: RCE in open source agents

26 min read - Big shoutout to Hugging Face and the smolagents team for their cooperation and quick turnaround for a fix! Introduction Recently, I have been working on a side project to automate some pentest reconnaissance with AI agents. Just after I started this project, Hugging Face announced the release of smolagents, a lightweight framework for building AI agents that implements the methodology described in the ReAct paper, emphasizing reasoning through iterative decision-making. Interestingly, smolagents enables agents to reason and act by generating…

4 ways to bring cybersecurity into your community

4 min read - It’s easy to focus on technology when talking about cybersecurity. However, the best prevention measures rely on the education of those who use technology. Organizations training their employees is the first step. But the industry needs to expand the concept of a culture of cybersecurity and take it from where it currently stands as an organizational responsibility to a global perspective.When every person who uses technology — for work, personal use and school — views cybersecurity as their responsibility, it…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today