RSA SecurID Breach Has Partners Seeking Answers

RSA channel partners are seeking more information and counseling their clients on risk mitigation following the publication on March 17 of an open letter from Art Coviello, CEO of RSA, an EMC company, that outlined a breach that compromised its highly popular authentication token SecurID product. Used by a wide range of organizations such as […]

Mar 19, 2011
Channel Insider content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

RSA channel partners are seeking more information and counseling
their clients on risk mitigation following the publication on March 17
of an open letter from Art Coviello, CEO of RSA, an EMC company, that
outlined a breach that compromised its highly popular authentication
token SecurID product. Used by a wide range of organizations such as
banks and highly sensitive government entities, SecurID provides
customers with a one-time authentication method that requires the user
to use a hardware token authenticator to sign in rather than relying
solely on insecure passwords.

As partners scrambled on last week to deal with the ramifications of
the breach, the details from  RSA as to how information was
obtained and what exactly the attackers took remained scant.

"The lack of specific information scares the —- out of me," says
Bobby Kuzma, owner of managed security service provider Central Florida
Technology Solutions.  "Fundamentally the fact that we don’t know
what exactly was compromised really limits our ability to react
appropriately on behalf of all of our clients, many of whom do have
secure id implementations."

The informational abyss has led to rampant speculation among
partners as they tried to figure out the implications for their
customers.

"Based on our current understanding there is no reason to suspect
the core security features of the SecurID have been significantly
compromised," says Jeremy Allen, principal consultant at Intrepidus
Group. "However, if there has been a flaw discovered in the SecurID
token code generation process or some large scale material compromise
of token seeds has occurred the impact could be tremendous. Given RSA’s
8K filing that they expect no financial impact there is not a reason to
suspect a significant compromise. Time will tell the real story behind
this compromise"

Token seeds are the algorithmic keys that enable SecurID tokens to
spit out an authentication code at certain intervals. Every token comes
from a different seed, which cannot be changed and essentially is the
lynchpin of the token’s security. It is the scenario of a loss of the
token seeds that frightens Kuzma most.

"The fact that it did not specifically note what was compromised
says to me that it’s either some or all of the seeds that they’ve
issued, or the mechanism by which they generate the seeds was
compromised," he says. "In that case, it may involve physically
replacing all of the outstanding key fobs with ones with new seeds,
which would be a Chinese fire drill of epic proportions. Because of the
secure design of these tokens, you can’t reseed them; they can’t be
reinitialized. RSA designed them to prevent that."

Recommended for you...

MetTel to Modernize Communication Lines for VA

MetTel secures a $54M contract to modernize 15,000 VA phone lines across 1,875 locations using its POTS Transformation solution, enhancing reliability and performance.

Jordan Smith
Aug 8, 2025
Stibo Systems Launches New AI Capabilities Across Portfolio

Stibo Systems unveils AI-driven MDM tools to reduce manual work, boost data accuracy, and accelerate operations for global enterprises and partners.

Jordan Smith
Aug 7, 2025
Galactic Advisors Wins Credential-Free Assessment Patent

Galactic Advisors patents a user-activated, credential-free pen testing tool, boosting MSP security with risk-free, forensic-grade assessments.

Jordan Smith
Aug 6, 2025
Shadow AI Meets Its Match in SentinelOne’s Latest Move

SentinelOne acquires Prompt Security to secure GenAI use, adding real-time visibility, control, and protection across AI tools and enterprise systems.

Channel Insider Logo

Channel Insider combines news and technology recommendations to keep channel partners, value-added resellers, IT solution providers, MSPs, and SaaS providers informed on the changing IT landscape. These resources provide product comparisons, in-depth analysis of vendors, and interviews with subject matter experts to provide vendors with critical information for their operations.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.