创新及科技解决方案

解决方案编号

S-0182

解决方案名称

AppProtect+ (RASP) / YESsafe Zero Login (OTP) / AccessMatrix Universal Sign-On (SSO)

解决方案描述

i-Sprint was founded in Year 2000 by a former IT & Security team of CitiBank; and is serving world's tier-1 banks and a number of financial institutions with Identity, Credential and Access Management solutions that are highly adaptable to comply with requirements from monetary authorities in different countries.


1) AppProtect+

is a RASP solution which proactively protects mobile apps against various risks and attacks by blocking attacks in real-time including Strandhogg, which can be a critical loophole for Android OS. It can prevent passive attacks (like reverse engineering, repackaging and source code modification), and respond by taking necessary measures if real-time attacks are detected during app running, allowing mobile apps to run securely even on highly infected smart devices.


2) YESsafe Zero Login

is a new generation all-in-one mobile security token using One Time Password (OTP) and PKI / Digital Certificate technologies that support different types of authenticators: e.g. YESsafe OTP, FIDO, 1FA, AD/LDAP…etc. for strong authentication and transaction authorization. The solution strengthens transaction signing experience with non-repudiation and data integrity protection, and it leverages the security protection of mobile devices with advanced time-to-market features that also consider the ease of use.


3) AccessMatrix Universal Sign-On (USO)

is a non-intrusive security solution for organizations to achieve single sign-on to web, desktop, java and host based applications without the costs and risks of application-level programming. USO has been integrated with most of the leading portal servers to provide single sign-on capability.

USO's facilities for auto-installation, auto-configuration and self- service greatly simplify deployment and reduce maintenance effort. The central security server stores the users’ security- related properties for each application.


Both Zero Login and USO solutions are built on the comprehensive and versatile Universal Authentication Server (UAS) which enables organizations to centralize and manage all its authentication schemes in a single unified platform. It also lowers the integration and operational costs with a common set of APIs while on the same backend.

应用领域

城市管理

工商业

发展

就业及劳工

财经

基础设施

法律及保安

康乐及文化

社会福利

使用的技术

流动技术

Single Sign-On,Password Protection,Compliance Support

使用例子

With YESsafe Zero Login:

- PIN Authentication

- Online/Offline Mode OTP

- Response Only OTP

- Challenge Response OTP

- Transaction Data Signing (TDS)

- Biometric Authentication (Login or TDS) - for Android & iOS devices with built-in biometric sensor

- Login with OTP

- Sign with OTP

- Scan and login

- Scan and sign

- Push and login

- Push and sign

- Support 1 user to have multiple devices/tokens

- Support 1 application to have multiple tokens / profiles


With AccessMatrix Universal Sign-On:

- Sign On to any application

- Web Based Client Interface

- Simple Installation

- Offline Operations

- Application Login Profile Generator

- Web Based Self Service Facility

- Powerful Reporting for Audit Events

- Self-Service Portal

- Password Reset

- Share Password Management

- Entitlement Review


With AppProtect+:

- Repackaging detection

- Debugger detection

- Code-Injection prevention

- Jailbreak / Root detection

- Emulator detection

- Hook detection

- Anti key-logging

- Anti screen-reading

- Screenshot detection

- External screen blocker

- App binding

- Code obfuscation

若政府部门欲对创科方案进行PoC试验或技术测试,请联络Smart LAB。