Entrust has announced a new strategy to combat account takeovers in the era of Artificial Intelligence (AI), launching its Biometric Authentication solution designed to provide identity-centric assurance during high-risk activities like account recovery, device changes, and large transactions. With cyber attackers increasingly focusing on these critical interactions, organizations must transition from merely verifying access to ensuring the identity of the real human involved in transactions.
The solution aims to minimize fraud while offering end-users a seamless experience. According to Mike Baxter, Entrust’s Chief Technology & Product Officer, "Too many organizations are treating authentication as a login problem, but attackers have already moved beyond access."
Adaptive Risk-Based Authentication
Baxter emphasizes the necessity of verifying the individual behind each interaction to thwart account takeovers, particularly given the rise in AI-driven attacks. These attacks have resulted in significant financial losses, with companies globally losing an average of 7.7% of annual revenue to fraud, largely due to account takeovers. AI-generated deepfakes now constitute one in five biometric fraud attempts, underscoring the urgent need for robust identity verification.
AI-generated deepfakes now constitute one in five biometric fraud attempts
The Entrust solution addresses these threats by integrating biometric identity verification with adaptive risk-based authentication, which is pivotal in countering presentation, injection, and deepfake attacks. This approach requires identity assurance during vital processes such as onboarding, account recovery, and major transactions.
A Unified Approach to Identity Assurance
Distinguishing itself from fragmented solutions, the Entrust Biometric Authentication solution leverages an established verified identity across all access points and interactions. This integration enables organizations to make informed authentication decisions by anchoring a biometric check to a trusted identity.
The solution empowers organizations to:
- Tailor identity assurance levels according to risk to combat account takeover attempts.
- Decrease unwarranted account lockouts due to password and one-time passcode failures.
- Strengthen defenses against presentation, injection, and deepfake attacks.
- Reduce manual reviews and support calls through secure self-service authentication.
- Provide consistent, auditable identity assurance throughout the user lifecycle.
- Enhance user experience with rapid, intuitive biometric processes.
Methods of Authentication
The Entrust solution employs three authentication methods tailored for varying risk levels:
- Biometric Passkey – Offers biometric authentication at crucial high-risk moments by linking authentication to a verified human identity.
- Face Authentication – Streamlines everyday and step-up authentication by replacing one-time passcodes with a straightforward biometric check.
- Motion Authentication – Provides defense against deepfake, replay, and injection attacks in high-assurance applications, conforming to ISO 30107-3 PAD Levels 1 & 2, with performance validated by iBeta Quality Assurance.
Entrust, a global pioneer in identity-centric security, today introduced a new approach to preventing account takeover in the age of AI. As attackers increasingly target high-risk moments like account recovery, device changes, and large transactions, organizations need to modernise authentication from verifying access to verifying the real human behind the transaction.
The Entrust Biometric Authentication solution brings identity-centric assurance to these critical interactions, helping organizations reduce fraud while delivering fast, easy end-user experiences. “Too many organizations are treating authentication as a login problem, but attackers have already moved beyond access,” said Mike Baxter, Chief Technology & Product Officer at Entrust.
Adaptive risk-based authentication
“Preventing account takeover in the age of AI requires confirming the person behind every interaction. Entrust helps organizations apply the right level of assurance at the right moments while delivering secure, low-friction experiences.”
The need is urgent, with AI-driven attacks contributing to dramatic increases in fraud and cybercrime. Global businesses lost an average of 7.7% of annual revenue to fraud with account takeover responsible for nearly one-third of those losses. At the same time, one in five biometric fraud attempts now involve AI-generated deepfakes.
The Entrust Biometric Authentication solution meets this challenge with identity assurance that combines biometric identity verification with adaptive risk-based authentication. This provides a crucial check against presentation, injection, and deepfake attacks by requiring identity assurance at key moments like onboarding, account recovery, device changes, and large transactions.
A unified approach to identity assurance
Unlike fragmented point solutions that address onboarding, authentication, and fraud prevention separately, the Entrust Biometric Authentication solution takes the verified identity that is established at enrollment and extends it across every access point and interaction. By anchoring a biometric check to that trusted identity, organizations can make consistent, high confidence authentication decisions.
The solution helps organizations:
- Apply the right level of identity assurance based on risk to fight account takeover attacks.
- Reduce unnecessary account lockouts from password and one-time passcode failures.
- Enhance protection against presentation, injection, and deepfake attacks
- Minimize manual reviews and support calls through secure self-service authentication
- Deliver consistent, auditable identity assurance across the user lifecycle
- Improve the user experience with fast, intuitive biometric experiences.
- The Entrust Biometric Authentication solution uses three authentication methods, each designed for different levels of risk:
- Biometric Passkey – provides biometric authentication at high-risk moments by binding authentication to a verified human identity.
- Face Authentication – makes everyday verification and step-up authentication faster and more secure by replacing one-time passcodes (OTPs) with an easy biometric check.
- Motion Authentication – helps defend against deepfake, replay, and injection attacks in high-assurance use cases with ISO 30107-3 PAD Level 1 & 2 conformant liveness detection, independently tested by iBeta Quality Assurance.