JANUS Data Sentryâ„¢

Unlike other attack pattern detection solutions that provide suggestive warnings to users, and producing a highly technical and complex audit trails as the base for loss recovery - the job can only be done by experienced Computer Forensics Experts which is time consuming and costly; Data Sentry provides secure, reliable and discrete ways of verifying the integrity of the transaction data independently in real time, so lost can be prevented;

Data Sentry Toolkit

Data Sentry NameDescription
DS SilentA DS task is carried out in the back ground without any user input.
DS PWDA DS task requires the user's authorisation code or password.
DS OTPA DS task requires the user to provide a One Time Password (Hardware or Software Tokens).
DS HFACA DS task requires the user to successfully completing the HFA Captcha challenge.
Ds HFAPA DS task requires the user to successfully completing the HFA password challenge.
Ds 3AKeyA DS task requires a 3AKey to complete but no user input is required.
DS 3AKeyA DS task requires a 3AKey and the username and password to be authenticated by 3AKey locally.

For the best security performance and minimising privacy compliance cost, FrontOne recommends 3AKey. However, the above Data Sentry technologies can be deployed with any strong authentication solutions to defeat Man-in-the-Middle and Man-in-the-Browser attacks.

Detection verses Prevention

E-fraud is a high-tech crime, attackers are well organised, and are using most advanced technologies available; for those who have kept up with trends in cybercrime, and they know detecting emerging malware is becoming all but impossible using traditional patterns recognition based technologies. Patterns can be established but requiring a minimal number of successful attacks to be captured, and this means lost must be suffered first.

Considering signature analysis defence must go after the adversary or always will be one step behind, this type of defence is ineffective at best; in contrast, JANUS Data Sentry excludes all other messages except those created by itself for each transaction, any attempts to tamper the message can be easily detected, message discarded and e-fraud is prevented.