Introducing TypingDNA Human Likeness – A Novel Bot Detection Approach for the AI Age 

Keep Unauthorized Users Out

TypingDNA ActiveLock continuously verifies users by the way they type. If an unauthorized typing pattern is detected, ActiveLock instantly locks the company desktop or laptop to protect sensitive data. For Windows, Mac and Linux (beta)

Protect the computer
throughout the user session

Protect active sessions

Authentication at login cannot tell who is using the computer minutes or hours later. ActiveLock continuously verifies the active user throughout the session.

Prevent device sharing

Detect when someone other than the authorized employee starts using a company computer, whether the device was intentionally shared or simply left unattended.

Reduce security and compliance risk

Add continuous verification to help reduce unauthorized endpoint access and support security, access-control, and session-monitoring requirements.

Private, on-device protection

Authentication and AI processing run directly on Windows, Mac and Linux (beta) devices, completely offline. Typing biometric data does not leave the computer.

Login authentication protects the login, not the entire session

Passwords, MFA, SSO, and device authentication help establish who is signing in. But once authentication is complete, the computer can remain accessible for hours without continuously verifying who is actually using it.

An unattended computer, shared workstation, stolen session, or intentional device sharing can therefore expose sensitive company and customer data even when the original login was legitimate.

Security shouldn't stop at login.
ActiveLock keeps verifying the user throughout the session.

How does ActiveLock protect an active session?

ActiveLock learns the authorized user's behavioral patterns and continuously evaluates activity while the computer is being used. ActiveLock 3.5 combines typing patterns with additional signals such as mouse behavior and optional face verification.

Unauthorized use can be detected in under 100 keystrokes. When activity no longer matches the authorized user, ActiveLock can automatically lock the system or trigger a silent alert.

Thank you TypingDNA for letting me use ActiveLock, and for finally introducing me to a solid example of practical & useful machine learning in the cybersecurity space!

Johnny Wachter

Johnny Wachter

Global Incident Response Manager

Monitor unauthorized access

Make your life easier by having a quick overview of your organization’s unauthorized users’ access or taking an extra look into specific alerts. Deploy the out-of-the-box ActiveLock installer to seamlessly aggregate the logs and see them in Datadog or Grafana.

Device sharing isn’t always malicious.
But it’s always dangerous.

When employees and contractors work remotely you want to be sure only they have access to company equipment. While continuous endpoint authentication is built to prevent fraudulent device sharing, that’s not always the case. Sometimes the threat is as simple as innocently sharing the device with family members. ActiveLock ensures only authorized users interact with company computers.

When employees forget to log out, continuous endpoint authentication steps in

If a user steps away from their workstation without logging out or an unauthorized person tries to use it, ActiveLock will automatically lock the device.

Can you see what my employees type?

ActiveLock is designed to be privacy-focused. We analyze how users type, not what they type. This lets us provide strong authentication security, while protecting privacy.

Support session security and access-control requirements

Organizations handling sensitive data need controls that reduce unauthorized access not only at login, but throughout the authenticated session. ActiveLock adds continuous behavioral verification directly at the endpoint.

This can support security and access-control programs in regulated environments while providing organizations with additional evidence and alerts around unauthorized endpoint use.

Learn more about continuous authentication and NIST session monitoring.

ActiveLock features
Pro version
Enterprise version

Lock Screen

Locks the screen when ActiveLock detects a non-authorized user. Once locked, you will be able to log back in IF you are the right user.

Alert

Opens a system alert along/instead of locking the computer.

Logs

Saves computer usage and continuous authentication data on the system in a .log file. The log contains information such as: computer name, absolute time, keyboard id, keyboard type, mouse id, application name, typing pattern characteristics (e.g. speed), training strength, authentication score, authentication result, action. The logs do not contain the actual text being type, nor the typing pattern or biometrics data.

Training

Training is set on AUTO right after installation but we also offer possibilities to manually adjust training. Once initial training is done, the app continues to train and becomes significantly better with time. On special occasions you may want to manually reset training (e.g. you break your arm, switch to a very different type of keyboard), for which we’ve built the Reset training feature.

Aggregate Logs

Aggregate the logs from each endpoint to your desired logging platform from where you can monitor each computer usage and authenticity in real time. We recommend Datadog or Grafana as a reliable log aggregation system, from which you can further communicate to your desired SIEM, data analytics or threat detection platforms.

Terminal Commands

Install and control the app through terminal commands. We’re currently working on adding more capabilities for terminal/powershell access. This is useful to be able to control the app remotely when running on many computers within an organization.

What's New in ActiveLock 3.5 Fortress

  • Dual-Layer Security: Fortress-inspired, with multi-layered defense.
  • Faster Detection: Identifies unauthorized access in under 100 keystrokes.
  • Multi-Modal: Combines typing patterns, mouse behavior, and face recognition.
  • On-Device AI: Continuously learns the authorized user's behavior. Typing patterns and typed data never leaves user's device.
  • Offline Operation: Authentication and AI processing run directly on Windows, Mac and Linux (beta) devices without requiring an internet connection.

Learn more about this game-changing update.

Selected Clients & Partners

ping identity optiv cyberark capgemini webhelp micorsoft azure bbva forgerock
proctoru omniasig wso2 foundever 1kosmos lyvoc TEC360 netbr novared
ping identity optiv cyberark capgemini webhelp microsoft azure bbva forgerock proctoru omniasig wso2 foundever 1kosmos lyvoc TEC360 netbr novared

Want to partner with us?

We're teaming up with channel partners and industry leading resellers to get TypingDNA ActiveLock continuous endpoint authentication into the hands of more clients. Contact us today to learn more.