Multifactor authentication can bear weaknesses that render its efficacy moot. A common response and answer to the most problematic forms of MFA, though the details are limited at best, is phishing-resistant MFA.

The qualifier, phishing resistant, is broadly defined as modes of authentication that rely on cryptographic techniques, such as an asymmetric pair of private and public keys, the Web Authentication API (WebAuthn) specification, biometrics or the FIDO2 standard. 


More

CIO.com: Passwordless MFA: The Single Way To Mitigate the Top 5 Threats to Your Customer Identities 

Consumers are increasingly targeted by cybercriminals that use various techniques in account takeover (ATO) attacks.…

Read More →

Nextgov: CISA’s Newest Advisor Could Soon Have Agencies Asking: ‘Does This Spark Joy?’

Another CISA advisor has referred to Bob Lord as a “digital Marie Kondo,” tidying up…

Read More →

The Wall Street Journal: Technology Alliance Says it is Closer to Killing Off Passwords 

The FIDO Alliance, whose members include Apple, Google and Microsoft, says it is readying a…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.