Well-implemented passkeys can improve the user experience and make it harder for cybercriminals to launch phishing and other attacks.

Passwords are a central aspect of security infrastructure and practice, but they are also a principal weakness involved in 81% of all hacking breaches. Inherent useability problems make passwords difficult for users to manage safely. These security and useability shortcomings have driven the search for alternative approaches known generally as passwordless authentication.

Passkeys are a kind of passwordless authentication that is seeing increasing focus and adoption. They are set to become a key part of security in the coming years. Passkeys represent a more secure foundation for enterprise security. Although they are not foolproof (they can be synced to a device running an insecure OS, for example), they are far more secure than passwords for customers, employees, and partners alike.


More

Ars Technica: Now there’s a better way to prevent Facebook account takeovers

Facebook is joining a handful of online services—including Google, Dropbox, GitHub, and Salesforce—in supporting security…

Read More →

American Banker: Why banks should consider taking a page from Facebook on security keys

American Banker poses the question, “If Facebook brings physical security keys using FIDO authentication to…

Read More →

ComputerWeekly: Facebook ups security with FIDO two-factor authentication

ComputerWeekly reports that Facebook is upgrading the login security for its 1.79 billion users by…

Read More →