According to NIST Special Publication DRAFT 800-63-B4, a phishing-resistant authenticator offers “the ability of the authentication protocol to detect and prevent disclosure of authentication secrets and valid authenticator outputs to an impostor relying party without reliance on the vigilance of the subscriber.” Two examples of phishing-resistant authenticators are PIV cards for US Federal employees and FIDO authenticators paired with W3C’s Web Authentication API for the private sector.


More

BetaNews: Research confirms consumers are turning to passkeys to protect their accounts

As you’ll already know, today is World Passkey Day and the FIDO Alliance has released an independent study of…

Read More →

Cyber Security News: 15 Billion User Gain Passwordless Access to Microsoft Account Using Passkeys

As the first-ever World Passkey Day replaces the traditional World Password Day, Microsoft joins the…

Read More →

Forbes: Microsoft Warns All Windows Users—Delete Your Password

Microsoft is on a mission to delete passwords for a billion users, given that “the password era…

Read More →