DARPA's advice on passwords: Dump 'em.

The Defense Advanced Research Projects Agency wants to eliminate passwords and use an individual’s typing style and other behavioral traits for user authentication, writes Kathleen Hickey in Government Computer News.

Creating, remembering and managing long, complex passwords is “inherently unnatural,” according to the agency. In addition, most authetication systems can't tell if the authenticated user is replaced by someone else during the session.

To read Hickey's full report, including DARPA's preferred authentication methods, click here.

About the Author

Connect with the FCW staff on Twitter @FCWnow.

The Fed 100

Read the profiles of all this year's winners.

Featured

  • Shutterstock image (by wk1003mike): cloud system fracture.

    Does the IRS have a cloud strategy?

    Congress and watchdog agencies have dinged the IRS for lacking an enterprise cloud strategy seven years after it became the official policy of the U.S. government.

  • Shutterstock image: illuminated connections between devices.

    Who won what in EIS

    The General Services Administration posted detailed data on how the $50 billion Enterprise Infrastructure Solutions contract might be divvied up.

  • Wikimedia Image: U.S. Cyber Command logo.

    Trump elevates CyberCom to combatant command status

    The White House announced a long-planned move to elevate Cyber Command to the status of a full combatant command.

  • Photo credit: John Roman Images / Shutterstock.com

    Verizon plans FirstNet rival

    Verizon says it will carve a dedicated network out of its extensive national 4G LTE network for first responders, in competition with FirstNet.

  • AI concept art

    Can AI tools replace feds?

    The Heritage Foundation is recommending that hundreds of thousands of federal jobs be replaced by automation as part of a larger government reorganization strategy.

  • DOD Common Access Cards

    DOD pushes toward CAC replacement

    Defense officials hope the Common Access Card's days are numbered as they continue to test new identity management solutions.

Reader comments

Fri, Mar 23, 2012

Hmm... I guess if I used this, I would have to stop drinking so much coffee - not only do I type more erratically, but also sometimes type one-handed to hold the mug. Another nutty idea to drop down the circular file.

Fri, Mar 23, 2012

If that is truely DARPA's advice, then I have no confidence in this organization to get much of anything right. Individual behavior always has some variability. When you have a system trying to recognize hundreds, if not thousands, of individual behavior ranges, often overlaping, on its system, then it is going to have a lot misinterpretations with people constantly being identified as someone they are not.

Thu, Mar 22, 2012

Can't imagine it working without replacing the entire pool of workstations with something a LOT faster. None of the workstations in my shop would be able to keep up without affecting the result. I can see a huge can of worms with this idea... What about simple things like how someone types differently when on the phone vs not? They'd be much better to put a little vacuum in the keyboard to get DNA samples. At least the processing would be done somewhere else.

Thu, Mar 22, 2012 JimO

It isn't an easy thing to do. My personal style seems to change from Monday to Friday, from good days to bad days. And then there is the problem of atrofication - as I get older, my style changes. And what if a person gets injured and can't use both hands (if they presently use both hands)? Too many "I before E escept after C, and in words like ..." problems.

Please post your comments here. Comments are moderated, so they may not appear immediately after submitting. We will not post comments that we consider abusive or off-topic.

Please type the letters/numbers you see above

More from 1105 Public Sector Media Group