Knowledge Based Authentication

From Open Risk Manual

Definition

Knowledge-Based Authentication. (KBA) It is a security measure that seeks to prove the identity of a user who is attempting to access an online service, by asking them to answer at least one secret question.KBA is generally used as a component in multifactor authentication(MFA) and for self-serve password retrieval.