Multifactor authentication can bear weaknesses that render its efficacy moot. A common response and answer to the most problematic forms of MFA, though the details are limited at best, is phishing-resistant MFA.

The qualifier, phishing resistant, is broadly defined as modes of authentication that rely on cryptographic techniques, such as an asymmetric pair of private and public keys, the Web Authentication API (WebAuthn) specification, biometrics or the FIDO2 standard. 


More

Help Net Security: IoT: The huge cybersecurity blind spot that’s costing millions

This contributed byline from Andrew Shikiar, executive director and CMO of FIDO Alliance, details cybersecurity…

Read More →

The Times: The Times view on the magic of ‘passkeys’: Open Sesame

Teams from Apple, Google, Microsoft, Amazon, Meta (the owner of Facebook, Instagram and other social…

Read More →

The Times: Using your face as a password is easy as abc123

Apple, Google and Microsoft put aside rivalries to work together on the passkey, along with…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.