SlideShare una empresa de Scribd logo
1 de 33
Morumotto
Visual Authentication
       Han Kessels
       Hanamaru
Morumotto?
Visual Authentication
   Overlap of images shares
How does it work?
?
Password?
Authentication can be hard to do right
- Some sites store your password in the clear
- Some sites even e-mail it to you
- Easy to guess password recovery questions
Password Reuse
As safe as the least secure site

       (Ask Twitter...)
Tradeoff
between security and convenience
What can we do to improve this tradeoff?
One Time Passwords (OTP)

No need to remember a complicated password
       Get a new password each time
           Can be used only once
Share a single user ID between many sites
.com
morumotto.com
morumotto.com

  OpenID provider service
   One-Time-Passwords
morumotto.com
   Visual authentication
       Multi-factor
           JRuby
            Free
Firefox 3+
          Safari 3+
          Chrome
            IE 6+
Opera 9+ (using bookmarklet)


         No plugins!
Docomo
      J2ME
    Android
iPhone (web-app)

      Soon:
       AU
  iPhone (native)
Secure Reset

Phishing Protection
OpenID Extensions

      popup
checkid_immediate
Private Beta
Public in a few weeks
 Please ask me for an account
       han@87zero.com
            @h4n

         or register at
    http://morumotto.com

Más contenido relacionado

Destacado

Guatemala 2013(rev1)
Guatemala 2013(rev1)Guatemala 2013(rev1)
Guatemala 2013(rev1)Jerry Zurek
 
98臺灣閩客語文學獎報名簡章
98臺灣閩客語文學獎報名簡章98臺灣閩客語文學獎報名簡章
98臺灣閩客語文學獎報名簡章98tkbh
 
Can you trust_the_web
Can you trust_the_webCan you trust_the_web
Can you trust_the_webDASD
 
Mission Hills Christmas Eve Promotion
Mission Hills Christmas  Eve PromotionMission Hills Christmas  Eve Promotion
Mission Hills Christmas Eve PromotionDavid Schroeter
 
Edtc6340 Shiggs Project2 Partb
Edtc6340 Shiggs Project2 PartbEdtc6340 Shiggs Project2 Partb
Edtc6340 Shiggs Project2 Partbsciencechair
 
Improving gcse outcomes
Improving gcse outcomesImproving gcse outcomes
Improving gcse outcomespeterbbb
 
Reporte mensual ad metrix junio 2014
Reporte mensual ad metrix junio 2014Reporte mensual ad metrix junio 2014
Reporte mensual ad metrix junio 2014IAB México
 
Social Media For Emergency Response Communications
Social Media For Emergency Response CommunicationsSocial Media For Emergency Response Communications
Social Media For Emergency Response CommunicationsBWEST Interactive
 
Shekel July 2009
Shekel July 2009Shekel July 2009
Shekel July 2009tamardrach
 
2011 07 oms atlanta-gillian-muessig-topic-modeling
2011 07 oms atlanta-gillian-muessig-topic-modeling2011 07 oms atlanta-gillian-muessig-topic-modeling
2011 07 oms atlanta-gillian-muessig-topic-modelingGillian Muessig
 
Master Networking List 7 4 12
Master Networking List 7 4 12Master Networking List 7 4 12
Master Networking List 7 4 12tom_55340_sic
 

Destacado (18)

Guatemala 2013(rev1)
Guatemala 2013(rev1)Guatemala 2013(rev1)
Guatemala 2013(rev1)
 
98臺灣閩客語文學獎報名簡章
98臺灣閩客語文學獎報名簡章98臺灣閩客語文學獎報名簡章
98臺灣閩客語文學獎報名簡章
 
Can you trust_the_web
Can you trust_the_webCan you trust_the_web
Can you trust_the_web
 
Ur-Energy March 2013 Corporate Presentation
Ur-Energy March 2013 Corporate PresentationUr-Energy March 2013 Corporate Presentation
Ur-Energy March 2013 Corporate Presentation
 
Ur-Energy April 2013 Corporate Presentation
Ur-Energy April 2013 Corporate PresentationUr-Energy April 2013 Corporate Presentation
Ur-Energy April 2013 Corporate Presentation
 
Mission Hills Christmas Eve Promotion
Mission Hills Christmas  Eve PromotionMission Hills Christmas  Eve Promotion
Mission Hills Christmas Eve Promotion
 
Edtc6340 Shiggs Project2 Partb
Edtc6340 Shiggs Project2 PartbEdtc6340 Shiggs Project2 Partb
Edtc6340 Shiggs Project2 Partb
 
Improving gcse outcomes
Improving gcse outcomesImproving gcse outcomes
Improving gcse outcomes
 
Reporte mensual ad metrix junio 2014
Reporte mensual ad metrix junio 2014Reporte mensual ad metrix junio 2014
Reporte mensual ad metrix junio 2014
 
Social Media For Emergency Response Communications
Social Media For Emergency Response CommunicationsSocial Media For Emergency Response Communications
Social Media For Emergency Response Communications
 
Shekel July 2009
Shekel July 2009Shekel July 2009
Shekel July 2009
 
2011 07 oms atlanta-gillian-muessig-topic-modeling
2011 07 oms atlanta-gillian-muessig-topic-modeling2011 07 oms atlanta-gillian-muessig-topic-modeling
2011 07 oms atlanta-gillian-muessig-topic-modeling
 
ACH 218 Lecture 03 (Organizational Structure) Part1
ACH 218 Lecture 03 (Organizational Structure) Part1ACH 218 Lecture 03 (Organizational Structure) Part1
ACH 218 Lecture 03 (Organizational Structure) Part1
 
BC Social Media Summit
BC Social Media SummitBC Social Media Summit
BC Social Media Summit
 
Q3
Q3Q3
Q3
 
2008 Electrical & Data
2008 Electrical & Data2008 Electrical & Data
2008 Electrical & Data
 
November 2012 Ur-Energy Corporate Presentation
November 2012 Ur-Energy Corporate PresentationNovember 2012 Ur-Energy Corporate Presentation
November 2012 Ur-Energy Corporate Presentation
 
Master Networking List 7 4 12
Master Networking List 7 4 12Master Networking List 7 4 12
Master Networking List 7 4 12
 

Similar a Morumotto

Biometry Presentation in Riga, Werner Blessing
Biometry Presentation in Riga, Werner BlessingBiometry Presentation in Riga, Werner Blessing
Biometry Presentation in Riga, Werner BlessingMobileMonday Estonia
 
Zombie browsers spiced with rootkit extensions - DefCamp 2012
Zombie browsers spiced with rootkit extensions - DefCamp 2012Zombie browsers spiced with rootkit extensions - DefCamp 2012
Zombie browsers spiced with rootkit extensions - DefCamp 2012DefCamp
 
Password Management
Password ManagementPassword Management
Password ManagementDavon Smart
 
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensionsZoltan Balazs
 
CryptoParty Belfast July 2015 Online Privacy Tips
 CryptoParty Belfast July 2015 Online Privacy Tips CryptoParty Belfast July 2015 Online Privacy Tips
CryptoParty Belfast July 2015 Online Privacy Tipspgmaynard
 
Internet for everyone
Internet for everyoneInternet for everyone
Internet for everyoneAshesh R
 
Danger on Your Desktop
Danger on Your DesktopDanger on Your Desktop
Danger on Your DesktopAndy Smith
 
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...BIOMETRY.com AG
 
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)Avansa Mid- en Zuidwest
 
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012Zoltan Balazs
 
Php symfony and software lifecycle
Php symfony and software lifecyclePhp symfony and software lifecycle
Php symfony and software lifecyclePierre Joye
 
Vortrag CeBIT 2011 - Biometric Security
Vortrag CeBIT 2011 - Biometric SecurityVortrag CeBIT 2011 - Biometric Security
Vortrag CeBIT 2011 - Biometric SecurityBIOMETRY.com AG
 
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)teoli2003
 
You think you are safe online. Are You?
You think you are safe online. Are You?You think you are safe online. Are You?
You think you are safe online. Are You?TechGenie
 

Similar a Morumotto (20)

Biometry Presentation in Riga, Werner Blessing
Biometry Presentation in Riga, Werner BlessingBiometry Presentation in Riga, Werner Blessing
Biometry Presentation in Riga, Werner Blessing
 
Zombie browsers spiced with rootkit extensions - DefCamp 2012
Zombie browsers spiced with rootkit extensions - DefCamp 2012Zombie browsers spiced with rootkit extensions - DefCamp 2012
Zombie browsers spiced with rootkit extensions - DefCamp 2012
 
Password Management
Password ManagementPassword Management
Password Management
 
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions
[ENG] Hacker halted 2012 - Zombie browsers, spiced with rootkit extensions
 
CryptoParty Belfast July 2015 Online Privacy Tips
 CryptoParty Belfast July 2015 Online Privacy Tips CryptoParty Belfast July 2015 Online Privacy Tips
CryptoParty Belfast July 2015 Online Privacy Tips
 
Internet for everyone
Internet for everyoneInternet for everyone
Internet for everyone
 
Danger on Your Desktop
Danger on Your DesktopDanger on Your Desktop
Danger on Your Desktop
 
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...
Biometrische IT-Sicherheitslösungen der BIOMETRY.com AG, CeBIT 2010, Security...
 
BIOMETRYsso
BIOMETRYssoBIOMETRYsso
BIOMETRYsso
 
Web DU Mobile Meow
Web DU Mobile MeowWeb DU Mobile Meow
Web DU Mobile Meow
 
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)
OpenTechTalks: Ethical hacking with Kali Linux (Tijl Deneut, UGent)
 
Hacktivityonly 121013141039-phpapp02
Hacktivityonly 121013141039-phpapp02Hacktivityonly 121013141039-phpapp02
Hacktivityonly 121013141039-phpapp02
 
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012
[ENG] Zombie browsers spiced with rootkit extensions - Hacktivity 2012
 
Breaking out of restricted RDP
Breaking out of restricted RDPBreaking out of restricted RDP
Breaking out of restricted RDP
 
Php symfony and software lifecycle
Php symfony and software lifecyclePhp symfony and software lifecycle
Php symfony and software lifecycle
 
Unique WordPress Ideas
Unique WordPress IdeasUnique WordPress Ideas
Unique WordPress Ideas
 
Vortrag CeBIT 2011 - Biometric Security
Vortrag CeBIT 2011 - Biometric SecurityVortrag CeBIT 2011 - Biometric Security
Vortrag CeBIT 2011 - Biometric Security
 
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)
Mozilla BrowserID/Persona (2012 MDN Hack Day LDN)
 
Fiabci 2013
Fiabci 2013Fiabci 2013
Fiabci 2013
 
You think you are safe online. Are You?
You think you are safe online. Are You?You think you are safe online. Are You?
You think you are safe online. Are You?
 

Último

The Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and InsightThe Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and InsightSafe Software
 
UiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewUiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewDianaGray10
 
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...TrustArc
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?Mark Billinghurst
 
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?Paolo Missier
 
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...marcuskenyatta275
 
Top 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTop 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTopCSSGallery
 
WebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM PerformanceWebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM PerformanceSamy Fodil
 
Portal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russePortal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russe中 央社
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPTiSEO AI
 
ADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxFIDO Alliance
 
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...ScyllaDB
 
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...ScyllaDB
 
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsContinuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsLeah Henrickson
 
AI mind or machine power point presentation
AI mind or machine power point presentationAI mind or machine power point presentation
AI mind or machine power point presentationyogeshlabana357357
 
JavaScript Usage Statistics 2024 - The Ultimate Guide
JavaScript Usage Statistics 2024 - The Ultimate GuideJavaScript Usage Statistics 2024 - The Ultimate Guide
JavaScript Usage Statistics 2024 - The Ultimate GuidePixlogix Infotech
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform EngineeringMarcus Vechiato
 
WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024Lorenzo Miniero
 
Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Patrick Viafore
 
Revolutionizing SAP® Processes with Automation and Artificial Intelligence
Revolutionizing SAP® Processes with Automation and Artificial IntelligenceRevolutionizing SAP® Processes with Automation and Artificial Intelligence
Revolutionizing SAP® Processes with Automation and Artificial IntelligencePrecisely
 

Último (20)

The Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and InsightThe Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and Insight
 
UiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overviewUiPath manufacturing technology benefits and AI overview
UiPath manufacturing technology benefits and AI overview
 
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?
 
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
(Explainable) Data-Centric AI: what are you explaininhg, and to whom?
 
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
 
Top 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development CompaniesTop 10 CodeIgniter Development Companies
Top 10 CodeIgniter Development Companies
 
WebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM PerformanceWebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM Performance
 
Portal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russePortal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russe
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
 
ADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptxADP Passwordless Journey Case Study.pptx
ADP Passwordless Journey Case Study.pptx
 
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
Event-Driven Architecture Masterclass: Engineering a Robust, High-performance...
 
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...
Event-Driven Architecture Masterclass: Integrating Distributed Data Stores Ac...
 
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on ThanabotsContinuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
Continuing Bonds Through AI: A Hermeneutic Reflection on Thanabots
 
AI mind or machine power point presentation
AI mind or machine power point presentationAI mind or machine power point presentation
AI mind or machine power point presentation
 
JavaScript Usage Statistics 2024 - The Ultimate Guide
JavaScript Usage Statistics 2024 - The Ultimate GuideJavaScript Usage Statistics 2024 - The Ultimate Guide
JavaScript Usage Statistics 2024 - The Ultimate Guide
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform Engineering
 
WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024
 
Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024
 
Revolutionizing SAP® Processes with Automation and Artificial Intelligence
Revolutionizing SAP® Processes with Automation and Artificial IntelligenceRevolutionizing SAP® Processes with Automation and Artificial Intelligence
Revolutionizing SAP® Processes with Automation and Artificial Intelligence
 

Morumotto