Why You Need Double Protection Now: Hardware and Software
Theft-prone laptops and Web authentication concerns have inspired some developers to double up on data protection, combining software and hardware to bolster security.
The approach lets security software and services vendors leverage security features built into the latest generation of processors. Independent software vendors (ISVs) are already tapping hardware resources to improve encryption. The basic concept holds that harnessing the best attributes of software and hardware provides a more in-depth defense.
Mauricio Cuervo, product manager at Intel, noted that software has greater flexibility than hardware -- new features can be added more quickly -- but it is more susceptible to attacks. Hardware, in contrast, is generally more robust and difficult to penetrate. Bringing the two together unites the richness of software and the tamper-resistant nature of hardware, he added.
"The ultimate objective is to drive that synergy," says Cuervo.
With that combination in mind, ISVs can now tap Intel's Anti-Theft Technology to tighten laptop security. That technology, also referred to as Intel AT, is equipped on second-generation Intel Core and Core vPro processors. It allows ISVs to bring theft deterrence into their solutions, while improving data protection with hardware assistance, says Cuervo.
Cuervo, who focuses on Intel AT, said Absolute Software, PlumChoice, Symantec and WinMagic are partnering with Intel on Intel AT to improve their security solutions. He said other partnerships are in the pipeline.
Garry McCracken, vice president of technology partnerships at WinMagic Inc., says the company has been able to add value to its full-disk encryption software by enabling an Intel AT feature called data encryption disable. The company is able to take part of its key -- for decrypting and accessing data -- and place it inside Intel's AT chip.
"If the Intel chip receives a kill pill or goes into a stolen state, the platform goes into a platform disable state and the computer is of no use to the thief," says McCracken.
"Even the actual hard drive is no longer accessible -- even to users that still have their credentials -- because part of the key is locked up into the hardware," he adds. "That is a key synergy between full-disk encryption and how we can leverage the capability of the hardware. It is worth noting that if the computer is recovered, an authorized administrator can re-enable the computer and regain access to the data."
PlumChoice Inc., meanwhile, will incorporate Intel AT in its SAFElink Anti-Theft service. The software-based solution locks down a customer's laptop when a theft or loss trigger is detected. Josh Goldlust, vice president, product management for PlumChoice, says Intel AT support means that lockdown can occur before a laptop's operating system boots. PlumChoise recently demoed this technology at an Intel Developer conference.
Intel integration will let PlumChoice enable an enhanced version of SAFElink Anti-Theft, which will test customers to assure they are the proper user of the device and have them provide the correct credentials, explains Goldlust. The PlumChoice solution performs a similar function without Intel AT, but the security measure takes place once the operating system has booted.
With Intel AT, Cuervo said Intel works with ISVs that concentrate on asset tracking, asset retrieval, or data protection of PCs. Developers who are interested in Intel AT can visit Anti-Theft.Intel.com for an overview, he noted. Intel provides an Intel AT SDK for developers, but only after the company has interviewed a potential ISV partner.
"It involves a deep level of integration with our product," says Cuervo. "We have to first analyze if it is a good fit for them and for Intel -- we do a discovery session."
Developers can also leverage Intel's Identity Protection Technology (Intel IPT) to boost security. Intel IPT comes built into second-generation Intel Core-based PCs and laptops, providing hardware-based, two-factor authentication. The technology aims to secure access to online accounts, virtual private networks, and applications.
Two-factor authentication generally involves username/password and something the user possesses -- a security token, for example. The token generates a number that serves as a one-time password. An Intel IPT-equipped computer, however, serves as the security token. Intel IPT generates the one-time password from an embedded processor on a computer's motherboard.
Soren Knudsen, product marketing engineer at Intel, said the company worked directly with large ISVs on Intel IPT. Currently, Symantec Corp. and VASCO Data Security International are security ISVs for Intel IPT. He said most security software companies looking to add a level of authentication and trust to their solutions would work with an Intel security ISV.
"They would use the partner's SDK, or services, or calls and implement that into their software solution," explains Knudsen.
Knudsen says developers can implement Intel IPT into a piece of Windows software or a website. He said most developers are using the technology to do authentication on the Web.
Cryptographic acceleration represents another area where software and hardware security meet.
WinMagic, for example, has started making use of Intel's Advanced Encryption Standard New Instructions (AES-NI). Those instructions, built into many recent Intel CPUs, accelerate the speed of encryption.
Thi Nguyen-Huu, president and CEO, WinMagic, says AES-NI deployment has a positive impact on solid state drives (SSDs). He said SSDs are 10 times faster than traditional rotating-disk hard drives.
Without the boost from AES-NI, "software encryption would be the bottleneck and negate the advance of the SSD," says Nguyen-Huu.
"We implemented AES-NI on the software side and found we have a greatly improved overall solution," adds McCracken.
Beyond Intel, AMD's next-generation Bulldozer processor cores are also expected to include encryption instructions.
- Top 11 Technologies on the Verge of Extinction
- The Top 5 Movie Phones
- Why You Need Double Protection Now: Hardware and Software
- The Long-term Commitment of Embedded Wireless
- Maxing out Multicore
- Google's New Airfare Search System
- The Latest Buying Gimmick: 'Google Wallet'
- Google Plus Now Open to All
- Facebook and Google Build DIY Servers
- Half of Global PC Users Use Illegal Software
- 4 Ways to Save on Gadgets
- Cell Phone Radiation: 5 Ways to Minimize It Now
- How to Choose the Right Tablet
- 5 Cool Apps for Your Labor Day Weekend
- 4G LTE: Not So Fast
- What Can the Cloud Do For You?
- Ubiquitous Computing: Is Ubicomp at a Tipping Point?
- Strike Back at SQL Injections
- The Mob That New Technology Has Made
- Social Networking Leads to Smoking, Drinking and Drug Use
- Cloud 101: Are You a PC, Mac or Cloud?
- Can You Get Fired for Your Blog Posts?
- Should You Switch to Google+ ?
- Navigate the Booming Computer Science Market
- China Outpaces United States in PC Market
- How Apple's iCloud Changes Business
- Use the Cloud to Go Mobile
- Apple iPad 2: A Smarter Business Tool
- Why You Can't Ignore iPhone / iPad Security
- Should You Let Your Teens Blog?
- Should You Talk Politics Online?
- How to Watch TV for Free -- or Close to It
- The Cost of Paying for Netflix
- Future for Slates, Tablets and iPads
- Social Media and Privacy (or Lack Thereof)
- Small Business Video: Life After the Flip
- Is It Safe to Post Photos Online?
- 9 Ways to Avoid Online Scams
- LinkedIn Offers New Options for Students
- 4 Strategies to Avert Virtual Arguments
- Cloud Computing 101: Protect Yourself Online
- How to Recover From a Social Media Mistake
- Why You Should Inventory Business Cloud Use
- Emerging Technology Has Positive Impact in Classroom
- 4 Apps to Manage Your Contacts
- Portable Tech Gadgets You Need This Summer
- Best Tablets for Your Business
- Security Tips for Your Smartphone or Tablet
- 5 New Cloud Tools You'll Love
- Can a Tablet Replace Your Laptop?
- Why Wireless Needs a Network of Networks
- 5 Steps to a Successful Enterprise Wireless Strategy
- 5 Keys for Moving Enterprise Security to the Cloud
- Tips for Building and Deploying Cloud-based Apps
- 5 Business Lessons You Can Learn From Mark Zuckerberg
- Russia: The No. 1 Base of Global Internet Attacks
- Researchers Say New Botnet TDL-4 Poses Big Threat
- The Internet Grows Up
- Ten Ways to Keep Your Online Information Secure
- How Facebook and Your Free Time Can Get You Fired
- The Only 10 Android Health Apps You Need
- Connected TV
- Near-Field Communication Technology the Next Big Thing
- The Future of 3-D Video
- Is Your Teen Sexting?
- Should You Ban Your Tweens From Facebook?
- Home Movies: Then and Now
- Is Social Media Malware Infecting Your Business?
- Is Your Tween (Illegally) on Facebook?
- Are Free Public Wi-Fi Networks Safe?
- Explosion of Creativity: Power of Online Communities
- The Future According to Google
- 5 Cheap Alternatives to Hiring a Personal Trainer
- When Your Dream Company is Hiring on Twitter
- Colleges Bring Campuses to Facebook
- Technology Powers Revolutions and Saves Lives
- Best Photo Apps
- Virtual World No Substitute for Real One
- Best Phone Apps for Busy Women
- How to Prevent Identity Theft
- How to Use Facebook So It Does not Use You
- Worst-case Computer Scenarios
- Google Chrome OS Notebook: A Security Game Changer?
- What Is Cloud Computing?
- How to Prevent Data Breaches
- Best Tips for Sharing Videos
- Do You Need an iPad for Your Small Business?
- The App Guide: 5 Must-have Shopping Apps
- Project Management Tips From the Pros
- Finding the Right Skill Set
- Who's Gawking at Your Photos?
- Dealing With Virtual Stalking
- CES 2011 Report - Consumer Electronics Show
- Time to Gear up for 3-D TV?
- How to Get the Best Service From IT Vendors
- Dating Apps: The Lowdown
- New Website Streamlines College-Aid Application
- Gift-card Resale Market Thrives Online
- Stop Cyberbullying Now!
- 5 Cloud Tools to Boost Your Productivity
- Mobile Pay Can Give You an Edge
- How to Find the Best Deals Online
- Should You 'Friend' Your Teens Online?
- Should You Really Post That Comment?
- 5 Smart Tactics for LinkedIn Self-Promotion
- How Repressive Regimes Use the Internet to Keep Power
- WikiLeaks: Diplomacy as Usual
- The Rising Threat of USB Drives
- Integrate Cloud Solutions With Caution
- Tech Solutions to Track Your Resolutions
- Crash Course in Computer Maintenance
- How to Pick the Right Cloud Provider
- Web Tools for Starting a Small Business
- 4 Life-changing Resolutions You Can Stick to
- Create Your Own Social Network
- What the Web Says About You
- FTC Chairman: 'Do Not Track' Rules Would Help Web Thrive
- 'Do Not Track' Rules Would Put a Stop to the Internet As We Know It
- Are Federal 'Do Not Track' Rules Needed?
- The Political Power of Social Media
- Top 3 Kid-safe Social Networks
- 5 Ways to Cultivate Your Kids' Online Reputation
- Preparing Our Children for Global Digital Citizenship Success
- The Great E-reader Roundup
- The NFL's Highest-scoring Apps
- New Gadgets Straight From the Big Screen
- A Game Plan for Protecting Stored Data
- The Drive for Real-time Collaboration
- Hang Onto People Who'll Help You Advance
- Leading New Developments in Visual Computing
- Meet Mr. Industrial: Justin Lassen's Music Machine
- Must-see TV on the Internet
- Share Safely on Social Networks
- 6 Essential Rules for Safe Online Shopping
- Five Steps to Kid-friendly Surfing
- High-tech Help for Weight Loss
- Create a Web Site or Blog for Your Family
- Video Eyewear for Sunglass Cinema
- Smart Phone Apps Help Stop Distracted Driving
- Online Computer Backup Services Remove Hassle
Copyright © 2011 Studio One Networks. All rights reserved.