Multifactor authentication can bear weaknesses that render its efficacy moot. A common response and answer to the most problematic forms of MFA, though the details are limited at best, is phishing-resistant MFA.

The qualifier, phishing resistant, is broadly defined as modes of authentication that rely on cryptographic techniques, such as an asymmetric pair of private and public keys, the Web Authentication API (WebAuthn) specification, biometrics or the FIDO2 standard. 


More

American Banker: Why banks should consider taking a page from Facebook on security keys

American Banker poses the question, “If Facebook brings physical security keys using FIDO authentication to…

Read More →

ComputerWeekly: Facebook ups security with FIDO two-factor authentication

ComputerWeekly reports that Facebook is upgrading the login security for its 1.79 billion users by…

Read More →

InfoWorld: Better authentication: Go get ’em, FIDO

In this feature on FIDO, InfoWorld shows how the FIDO Alliance is breaking the mold…

Read More →