Salesboom. com to End Phishing Attacks on CRM with Two Factor Authentication
January 3, 2008
Everyone knows I’m a big fan of two factor authentication. Why do I like two Factor Authentication so much?
The reason why 2 Factor Authentication works is because you need something physical that you own, and something only you would know that is normally memorized (and not written down on a piece of paper!).
If they steal your token, they still need your password. If someone tricks you in giving them your password, they still need that token to log in. Of course, having a corporate strong password policy helps too.
Now, Salesboom.com has just put out a press release saying they will end phishing attacks on CRM.
Salesboom is a hosted, web based, on demand CRM software and Back Office solutions are seamlessly integrated and easily deployed across your enterprise in real time, and at a much lower cost than traditional on-premise solutions and other lackluster on demand CRM vendors.
They are using a two factor authentication security approach which means an employee must insert a USB key into their computer before login. If the username and password entered match the “digital ID” then access is granted. This would have been helpful to salesforce.com when one of it’s employee’s was “tricked” into disclosing their password.
I’ve used these type of token in the past, such as EnTrust, but I prefer the RSA token where the password changes every 60 seconds. You have the first 4 numbers memorized, and you enter the 6 numbers on the token.
With Salesboom’s security you could give your password away and it’s still no good to any scammer out there. Salesboom says that the USB keys can not be duplicated and are encrypted.
This is very good news to hear, as something was needed to be done to help protect companies databases, especially service as a software (SaaS) or software on demand.
By the looks of things, 2008 should be a safer year for CRM vendors.
Related Articles on CRM Help Desk Software.com
- Data Breaches Set Record in 2007, Identity Theft to Increase in 2008
- Salesforce.com Enticement Program: Migrate with Ease
- Salesboom.com Rescue Initiative for Entellium Customers
- Enhanced Outlook Edition by Salesboom .com Drives User Adoption
- Salesforce.com Warns Customers Of Phishing Scheme
Recent Articles on CRM Help Desk Software.com
- Larry Ellison - It’s Ludicrous that Cloud Computing is Taking Over the World
- Salesboom.com Rescue Initiative for Entellium Customers
- Need Support or Help Desk for Gmail? Slim and None
- Entellium CEO, CFO Charged with Wire Fraud
- iDashboards presents Dynamic Data Visualization and the 2008 U.S. Presidential Election
- Webcast: SugarCRM on Deploying a CRM Solution
- NetSuite Automates End-to-End Business Operations
- Entellium CRM in Trouble?
- Websense Delivers Data Loss Prevention Endpoint Software and Web Gateway Integration
- Etelos introduces Virtual Server Environments
Free Newsletter
Sign up for the free Daily newsletter, filled with tips and ideas on how to choose a proper CRM, Help Desk, Customer Support, or Enterprise Content Management software system. Your email address will be kept confidential and won't be shared. Easily unsubscribe at any time.
If you enjoy the free information available on this site, you're sure to enjoy the free newsletter as well:
Site Search Tags:
CRM, Help Desk, Customer Support, Marketing, ERP, Enterprise Content Management, ITIL, ISO 20000, Data Security, On-Demand, SaaS,
Share and Enjoy:
Comments
3 Responses to “Salesboom. com to End Phishing Attacks on CRM with Two Factor Authentication”
Got something to say?




I think RSA is a better technology indeed, but just having a crm vendor think about two-factor authentication is a brilliant idea and is a first. Is Salesboom.com the only crm vendor offering such a service?
@Eric - Yes, I think they are the only vendor for now. But I can guarantee there will be at least 20 by year end!
I’m pretty sure as well that Salesboom is the only CRM vendor to offer two factor authentication, it’s nice to see some companies thinking about security before a phishing scam successfully breaches their database.