Despite exciting progress toward more secure and usable factors, the best MFA mechanism for consumers really isn’t MFA at all — it’s passkeys. Passkeys are a FIDO authenticator with the advantage of being backed up to the cloud, so if you lose your device or buy a new one, all you must do is sign into your iCloud or Google Play account to recover your passkeys. Passkeys use public key cryptography and device biometrics, making them resistant to many known attacks, and are easy for the user.


More

Heise: PayPal: Passkey instead of password for Apple users

PayPal is the first major service to jump on the FIDO passkey bandwagon: iPhone users…

Read More →

Teiss: Security by obscurity keeps us password-dependent

We need security, by community. Andrew Shikiar of the FIDO Alliance calls on more businesses…

Read More →

Financial IT: FIDO Alliance study reveals password usage still dominates financial services – and is proving costly

The FIDO Alliance published its second annual Online Authentication Barometer, which gathers insights into the…

Read More →