
Man-in-the-Middle (MITM) attacks from malware and online banking trojans are responsible for millions of dollars in fraudulent financial transactions each month and defeat many of the security measures put in place to protect against them. PhoneFactor’s out-of-band transaction verification protects financial institutions and their customers from even the most sophisticated attacks.
PhoneFactor Transaction Verification offers:
Protection from MITM Attacks
Because man-in-the-middle attacks are initiated by malicious code running on the user’s computer, these attacks can be used to hijack a user’s authenticated session without detection by the online banking application or the end user. Once the session is compromised, fraudulent transfers to mule accounts are initiated.
The only way to protect against these attacks is to verify the transaction through a secondary, or out-of-band, channel. PhoneFactor does this by placing an automated call, sending a text message, or pushing a notification to the PhoneFactor App on the user’s mobile device with details about the transaction. The user can then approve or deny that specific transaction. PhoneFactor’s out-of-band architecture is not vulnerable to malicious code running on the user’s computer.
Phone Call, SMS Text, Phone App and Voiceprint Methods
Allow users to choose the authentication method they prefer, phone call, text message, or phone app, all with the same level of out-of-band security and convenience. For the highest level of security, confirm the user’s biometric voiceprint during the verification call.
Authenticate Transactions and More
In addition to securing ACH and wire transfers, PhoneFactor’s Transaction Verification can be used to authenticate any high-risk transaction or event, including both individual and batch bill and payroll payments, password and phone number changes, the creation of new online user accounts, transaction limits and more. PhoneFactor can also be used for dual-approval processes requiring that multiple individuals approve a transaction.
Rapid Implementation and a Robust, Scalable Authentication Platform
PhoneFactor offers a number of integration options for rapid implementation, including a Universal Banking Gateway, which adds an authentication layer to any online banking platform without requiring that the platform be modified. PhoneFactor scales to support millions of online transactions with multiple layers of redundancy ensuring the highest level of performance and availability.