Secure Wordpress login with a digital identity card

B2B Cyber ​​Security ShortNews

Share post

Electronic identity can now be used free of charge in WordPress for strong login authentication via a plugin. Classic login can hardly be hacked anymore. The Wordpress market share in Germany is around 46 percent.

After the recent publication of an “eID login” app for Nextcloud, ecsec GmbH was once again working on behalf of the Federal Office for Information Security (BSI) and now has an “eID login” plugin for the freely available and market-leading WordPress content management System (CMS) developed and published under an open source license. In connection with the SkIDentity service, the ID card with online ID function can now be used free of charge in all WordPress-based websites for strong authentication.

ID card can be used in WordPress for strong authentication

The identity card with online identification function, which is notified at the highest possible level of security ("high") in accordance with the eIDAS regulation, can be used by all citizens for electronic identification (eID) and for strong pseudonymous authentication on the Internet. In addition, a large percentage of all German websites are implemented on the basis of the freely available and market-leading WordPress Content Management System (CMS). Against this background, based on the recently published "eID-Login" app for Nextcloud, on behalf of the Federal Office for Information Security (BSI), ecsec GmbH developed an "eID-Login" plugin for WordPress, with which the ID card with online ID function can now be used in WordPress for strong authentication.

SkIDentity enables free use of eID for WordPress

The early and standard consideration of relevant security aspects according to the principle of "Security by Design" and the publication of the "eID-Login" plugin for WordPress as open source, a maximum of trustworthiness is achieved. So that the ID card can be used immediately and free of charge for strong authentication in WordPress, the multi-internationally award-winning SkIDentity service for strong authentication free of charge is also provided as part of the joint project by BSI and ecsec.

Free WordPress plugin

"It is great that the ID card with online ID function can now be used free of charge in WordPress for strong authentication," adds Dr. Detlef Hühnlein Managing Director of ecsec GmbH. "This means that the electronic identity can be activated and used immediately on around 40% of all websites."

More at Ecsec.de

 


About ecsec

ecsec is a specialized consultant and provider of innovative solutions in the field of security in information and communication technology, security management, chip card technology, identity management, web security and electronic signature technology. Based on experience from several consulting projects with international reach, ecsec GmbH is one of the leading providers in this area and supports well-known customers in the conception and implementation of tailor-made solutions. By taking into account the current state of science and technology and current and future international standards, excellent quality of advice and sustainable customer success are guaranteed. For example, ecsec developed the Open eCardApp and the Open eCard Library, which was the world's first open source "eID client" or "eID kernel" to be certified by the Federal Office for Information Security and received numerous international awards for its innovative SkIDentity service , which enables “Mobile eID as a Service”.


 

Matching articles on the topic

Report: 40 percent more phishing worldwide

The current spam and phishing report from Kaspersky for 2023 speaks for itself: users in Germany are after ➡ Read more

BSI sets minimum standards for web browsers

The BSI has revised the minimum standard for web browsers for administration and published version 3.0. You can remember that ➡ Read more

Stealth malware targets European companies

Hackers are attacking many companies across Europe with stealth malware. ESET researchers have reported a dramatic increase in so-called AceCryptor attacks via ➡ Read more

IT security: Basis for LockBit 4.0 defused

Trend Micro, working with the UK's National Crime Agency (NCA), analyzed the unpublished version that was in development ➡ Read more

MDR and XDR via Google Workspace

Whether in a cafe, airport terminal or home office – employees work in many places. However, this development also brings challenges ➡ Read more

Test: Security software for endpoints and individual PCs

The latest test results from the AV-TEST laboratory show very good performance of 16 established protection solutions for Windows ➡ Read more

FBI: Internet Crime Report counts $12,5 billion in damage 

The FBI's Internet Crime Complaint Center (IC3) has released its 2023 Internet Crime Report, which includes information from over 880.000 ➡ Read more

HeadCrab 2.0 discovered

The HeadCrab campaign against Redis servers, which has been active since 2021, continues to successfully infect targets with the new version. The criminals' mini-blog ➡ Read more