Personal security gets DIVA treatment

By Lynn Tan, ZDNet Asia
Tuesday, September 25, 2007 07:22 PM

SINGAPORE--The local government has developed a personal security software designed to let users manage their digital identity with the help of flash-based devices.

Dubbed DIVA (Dynamic Isolation of Virtualized Applications), the application was unveiled today at the annual Governmentware 2007 conference and exhibition held here this week. Discussions at the three-day event revolve around infocomm security threats within the public sector, and the event was presented by Ministry of Home Affairs, said Ian Monteiro, a spokesperson for Governmentware 2007.

According to Monteiro, the DIVA application can be loaded on a portable flash-based storage media, such as SD cards and portable USB drives, and used with mobile devices and PCs. The software is also operating system (OS) and device-independent, he added.

"The [objective] of DIVA is to give [consumers] convenient, secure access to a wide variety of applications," Monteiro said, noting that the core function of the software is to verify the identity of the user in an electronic transaction.

For instance, when a DIVA-enabled USB storage device is plugged into a PC, a virtual keyboard appears and users key in their password to verify their identity. According to Monteiro, the virtual keyboard can help prevent key-logging since the users input their password with a mouse rather than the physical keyboard.

Currently at the proof-of-concept stage, DIVA was fully developed by Singapore's MHA and evolved from DORIS (Digital Online Registration and Identification System), a hardware-based personal security system--also developed by the MHA--showcased at Governmentware 2006, he said.

Used as a form of "mobile identity" and two-factor authentication, DORIS is a thumb-size USB hardware token based on smart card chip and flash-based memory technology.

"[DIVA] is the next stage," Monteiro explained, noting that the protection of a user's identity should be enabled by software rather than hardware tools. "Flash-based memory [then] becomes a repository for information rather than anything else."

"The whole concept of DIVA is [based on the need for] single sign-on... Think of it as an access card," he said. "How you want to use this card is really up to the organizations to decide, because if the security is absolute and your privacy and security are protected, you can do almost anything [with it]. So, it's up to the individual organization [or] industry to adopt it."


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Use shades of gray to enhance scale in Excel

Microsoft Office Suite

Excel's palette is generous, but don't throw buckets of pigment all over your spreadsheets just because you can.


Read more »



Ultimate 2012 recovery site: the moon

Blog thumbnail

Have you seen the disaster movie "2012"? A friend from Control Risks and I did, and we reluctantly concluded we wouldn't be able to write off the cost of our..... by Nathaniel Forbes

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web