The Java Ring: A Wearable Computer (1998)
nngroup.com
nngroup.com
I did eventually get my hands on a "fully enabled" ring, which I've still got. As I recall the best it could do was 1024 bit RSA though.
[1] http://www.javaworld.com/article/2076726/learn-java/my-enigm...
We all thought the JVM was about to revolutionize client software development and break Microsoft (once everything ran on the JVM, MS wouldn't have an app ecosystem that tied us to them). Meanwhile, the browser was staring us right in the face, and it was server-side where the JVM blew up.
It's notable that the current, much more successful, wave of embedded platforms suitable for DIY work don't run Java.
If we could get rid of the "something I know" and go to "something I have" and "something I am", network-based attacks would be that much more difficult. The password is dead. With something like an RSA token, barring any breach of RSA's algorithm (again) or a complete bypass of the authentication system altogether, an attacker would need to be physically near me to compromise my account (would need to steal my fingerprint AND my smart card).
And no, Google Authenticator isn't quite the same. I use it on all my accounts, but it's just so damn inconvenient. A ring, a watch, or even an NFC version of Google Authenticator would work so much better.
Although you can quite easily go from that (if you have master keys and/or app installation keys) into running, for example, OpenPGP [1].
There are plenty of NFC-like standards, and smart card-like authentication protocols. Can we just standardize on one of them, get the hardware out there, and solve this problem already.
I guess a lesson of the intervening decade and a half has been that almost nobody knows enough crypto for the applications they're trying to develop. :-(
Don't really understand why these didn't take off vs. a smart card for authentication: as far as I know they're more durable and they're pretty cheap.
Nowadays I don't want another key. I want a standardized RFID protocol (active and passive). I have two office RFID cards, a key-fob for my car, a card for the garage, my phone supports NFC and I get another card when I go to a hotel. And they are all different and incompatible. I can't keep both of my office cards in my wallet, because while they are not the same protocol, they are on the same frequency and conflict.
It is maddening. I want my phone to act as an active NFC identity transmitter, and I want a backup passive RFID card I can put in my wallet. It should be simple to pair these two devices with all of these desperate systems.
Oh, and while I am at it, can my phone not be a whore about it and only respond to receivers that I have expressly authorized.
Why is standardization so hard?
now you can put rfid in ring :)
(France's press culture is much superior to any other country that I've been to - when I go back to visit family, I always grab a pile of magazines to bring back with me)
I miss it.
On a more universal level, it shows just how ridiculous most buzzwords are. As we laugh today about JavaScript and the Java Ring, we will laugh tomorrow about today's ubiquity of the "cloud."