The day the Internet died

 
 

On March 18, 2010 the first ever Session Replay attack was observed


All user’s static credentials were replayed, including SSL browser certificates.

Cyber criminals drafted wires totaling $90M in one day.

 
 
 

Before 2010

We had the Breach of the Year

Session Replay attacks were predicted to defeat all static user credentials

Cyber-criminals began harnessing the ZeuS malware to replay sessions and gained a game-changing advantage…

 

Now

We now have the Breach of the Day

Adding any new static user credentials like longer passwords or biometrics is futile.

The good guys need a game-changing advantage…

 
 

Enter Trusona patented anti-replay

 
Trusona-TruAR-Flyer-BLACK.jpg
 
 

Session replay attacks are growing exponentially and won’t make it past Trusona’s patented anti-replay. We're passionate about curbing this attack vector—so passionate that we made our Essential product free as our gift to the world. Like every product in the Cloud Identity Platform, Trusona Essential contains TruAR anti-replay.

 
 

Trusona TruAR Anti-Replay

included in Trusona Essential

What the Trusona Essential user does

What the Trusona Essential user does

 
 
What Tru-AR does

What Tru-AR does

 

The massive amounts of breaches we speak about above are due to passwords and session details that are replayed by cybercrooks to gain access to accounts and execute transactions.

Trusona’s TruAR patent pending anti-replay is conducted on every transaction to ensure that nothing is replayed. 

When users interact with our app, Trusona’s TruAR anti-replay uses the unique values of time, latitude, longitude, acceleration to create a cryptographic nonce that can never be repeated. 

If we see an exact match of this nonce, we know it’s fraud and the Trusonafication is rejected.  

We keep part of how we do this out of our patents because we know that the bad guys look at patents, too. 

Trusona Essential is designed for lower risk transactions as a simple and more secure solution than static username and passwords. 

Trusona Executive extends these security features.

TRUSONA TRUSCAN-AR ANTI-REPLAY

included in Trusona Executive

What the Trusona Executive user does

What the Trusona Executive user does

 
 
What TruScan-AR does

What TruScan-AR does

 

Trusona’s TruScanAR patent-pending anti-replay is conducted on every Trusona Executive transaction to ensure that nothing is replayed. 

When users scan their driver’s license for each transaction or login, our TruScanAR anti-replay uses the unique values of the scan to create a cryptographic nonce that can never be repeated.

If we see an exact match of this nonce, we know it’s fraud and the Trusonafication is rejected.  

Trusona Executive is designed for higher levels of security.

Next, lets look at Trusona Elite—the unassailable security solution. 

TRUSONA TruToken-AR ANTI-REPLAY

included in Trusona Elite

What the Trusona Elite user does

What the Trusona Elite user does

 
 
What TruToken-AR does

What TruToken-AR does

 

When registering for Trusona Elite, the user registers any card with a magnetic strip — a credit card, library card, Costco card, credit card. 

When the user initiates a transaction, a wire transfer for example, they swipe the registered card to approve the transaction.  

And this is the reason we are the only solution ever to receive backing by an A+ rated insurance carrier—because of our patented TruToken and the TruTokenAR anti replay.  

When the card is scanned, we look at the physical magnetic strip on the back of the card, not the card data. 

On this molecular level no two strips are the same—like sprinkles on a donut.  Magnetic strip data can be skimmed and copied but the physical properties of the magnetic strip cannot be skimmed or copied. It is impossible to create an exact replica of a magnetic strip at this level. 

We take these swipe values of speed, angle, direction, pressure, wear and tear on each card to create a cryptographic nonce that can never be repeated.

For this reason, if we ever see the same swipe we know it is fraud and the Trusonafication is rejected.

Trusona Elite is designed to ensure that your most sensitive assets are protected with the most state of the art security technology available.