Recent academic research has revealed new insights into the security considerations surrounding FIDO2 authentication and synced passkeys, highlighting both the strengths and potential vulnerabilities of current authentication systems. The analysis comes at a time when major technology companies are increasingly adopting passkey technology, with Microsoft reporting login times three times faster than traditional passwords.

Formal methods analysis of the FIDO2 standard has revealed potential weaknesses in the underlying protocols that warrant attention from security professionals. The research particularly focuses on the implementation of synced passkeys, which enable cross-device access through passkey providers. These findings support recent expert warnings about interoperability concerns in FIDO2 implementations.


More

ARS Technica: iDevices finally get key-based protection against account takeovers

Apple is on board with FIDO Authentication: iOS and iPadOS 13.3 now natively support FIDO2,…

Read More →

The Verge: iOS 13.3 arrives with full support for physical security keys

The Verge reports on Apple’s iOS 13.3 update with FIDO support in the Safari browser…

Read More →

Cybersec Asia: Running Smart Cities on IoT: Time to uproot lax security

IoT devices present danger before, during, and after deployment, and the proliferation of this technology…

Read More →