Recent academic research has revealed new insights into the security considerations surrounding FIDO2 authentication and synced passkeys, highlighting both the strengths and potential vulnerabilities of current authentication systems. The analysis comes at a time when major technology companies are increasingly adopting passkey technology, with Microsoft reporting login times three times faster than traditional passwords.

Formal methods analysis of the FIDO2 standard has revealed potential weaknesses in the underlying protocols that warrant attention from security professionals. The research particularly focuses on the implementation of synced passkeys, which enable cross-device access through passkey providers. These findings support recent expert warnings about interoperability concerns in FIDO2 implementations.


More

The Verge: Chrome and Firefox will support a new standard for password-free logins

In his reporting on the newly announced FIDO2 Project, The Verge reporter Russell Brandon predicts…

Read More →

Ars Technica: Practical passwordless authentication comes a step closer with WebAuthn

ArsTechnica reports that the World Wide Web Consortium (W3C) and FIDO Alliance announced that a…

Read More →

CNET: Password-free web security is coming to Chrome, Firefox, Edge

CNET reports that leading browsers Google Chrome, Mozilla Firefox and Microsoft Edge will support WebAuthn…

Read More →