Threat actors targeted two major tech firms with nearly identical phishing schemes last week. In one case, attackers gained access to data for approximately 125 customers. In the other, they tricked three employees but did not gain any system access to their systems. FIDO2-compliant security keys are cited as a “linchpin mechanism” in Cloudflare’s defense.


More

Engadget: The web just got an official password-free login standard

Web Authentication (aka WebAuthn) has been a de facto standard for no-password web sign-ins for…

Read More →

CNET: Google looks to leave passwords behind for a billion Android devices

Unveiled at Mobile World Congress in Barcelona: Android passwords could one day go the way…

Read More →

The Verge: The latest Android devices now let you log into apps without requiring a password

Here’s a good reason to update to your latest version of Google Play Services: The…

Read More →