Comment Re:What if you obscure the pattern? (Score 1) 135
Nac, thank you for your time and thoughts. At this point you are looking at and analyzing GridOne's most BASIC GridPass (password + target corner) creation with straight substitution. I will still stack GridOne up against MOST other system and restate that other systems are compromised at first instance where GridOne is not. Regarding Decoy Digits, reductions and credible crypto-analysis has the number of necessary observations at 12+ and more than twice that depending on the underlying password complexity. Opportunistic threats are either transfered elsewhere or mitigated. Now consider a GridPass of a "password" + target corner + add 2 to that target corner. So if the user's password starts with a "G" and the target corner is a 5 the user would enter in a 7 (and so on)!!!! Now add Decoy Digits to that. The Grid system will allow users to create or use thier existing passwords, but then use various corners, combinations of corners and other "functions" that will make attack extremely difficult. Motivated user will have the ability to create GridPasses that are easy to remember, completely portable and extremely secure. And all this is with just the FIRST factor. Grid/GridOne allows the ability to completely do away with the use of reusable passwords and PINS. What percentages of ALL logins (web, domain, ATMs, VPNs, etc.) still rely on reusable information? 98+%??? Finally GridPasses can be blended or play nicely with all the other factors and schemes. And when situations require that only the first factor can be used, Grid offers superior protection. Thanks for listening and I would be more than happy to walk you through a WebEx demo to experience the full system.