A cyber security breach that unfolded at LastPass – a provider of credential management services – appears to have affected only the firm’s developer environment, and is unlikely to rebound on users, according to community experts, who have praised the firm for its quick and transparent response to the incident. Many providers, including LastPass, are offering and migrating to passwordless logins which use more advanced security technologies such as FIDO2 security keys. This reduces friction for end-users and increases the overall account security.


More

Wired: The War on Passwords Is One Step Closer to Being Over

“Passkeys,” the secure authentication mechanism built to replace passwords, are getting more portable and easier…

Read More →

What is a passkey? Why Apple is betting on password-free tech

The digital realm has long struggled with the vulnerabilities inherent in password-based authentication systems. With…

Read More →

The Register: AWS is pushing ahead with MFA for privileged accounts. What that means for you.

AWS is making multi-factor authentication (MFA) mandatory for privileged users, specifically management account root users…

Read More →