The effectiveness of hardware-based MFA keys was brought to light as both Twilio and Cloudflare were targeted with sophisticated phishing attacks, but only the latter prevented a full attack thanks to the company-wide use of FIDO keys in addition to MFA security prompts.


More

Engadget: The web just got an official password-free login standard

Web Authentication (aka WebAuthn) has been a de facto standard for no-password web sign-ins for…

Read More →

CNET: Google looks to leave passwords behind for a billion Android devices

Unveiled at Mobile World Congress in Barcelona: Android passwords could one day go the way…

Read More →

The Verge: The latest Android devices now let you log into apps without requiring a password

Here’s a good reason to update to your latest version of Google Play Services: The…

Read More →