According to NIST Special Publication DRAFT 800-63-B4, a phishing-resistant authenticator offers “the ability of the authentication protocol to detect and prevent disclosure of authentication secrets and valid authenticator outputs to an impostor relying party without reliance on the vigilance of the subscriber.” Two examples of phishing-resistant authenticators are PIV cards for US Federal employees and FIDO authenticators paired with W3C’s Web Authentication API for the private sector.


More

ZDNet Japan: FIDO unveils latest trends in Japan-LINE and docomo go passwordless

ZDNet reports on the spread of FIDO Authentication in Japan, highlighting efforts made by the…

Read More →

CNN Money Switzerland: A World Without Passwords Is Just Around The Corner

A video interview with CNN Money Switzerland explores a passwordless future with Executive Director of…

Read More →

Computer Business Review: eBay Puts Another Nail in the Password Coffin with WebAuthn Rollout

eBay is working towards phasing out passwords by adding FIDO Authentication to the login on…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.