Multifactor authentication can bear weaknesses that render its efficacy moot. A common response and answer to the most problematic forms of MFA, though the details are limited at best, is phishing-resistant MFA.

The qualifier, phishing resistant, is broadly defined as modes of authentication that rely on cryptographic techniques, such as an asymmetric pair of private and public keys, the Web Authentication API (WebAuthn) specification, biometrics or the FIDO2 standard. 


More

The Register: Microsoft: You looking at me funny? Oh, you just want to sign in

Microsoft has been trailing the tech for a while, slipping technology from the Fast IDentity…

Read More →

Le Monde Informatique: Cloudflare keys to get rid of captchas

According to Cloudflare, it takes only three clicks to validate the cryptographic personality certificate, compared…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.