Recent academic research has revealed new insights into the security considerations surrounding FIDO2 authentication and synced passkeys, highlighting both the strengths and potential vulnerabilities of current authentication systems. The analysis comes at a time when major technology companies are increasingly adopting passkey technology, with Microsoft reporting login times three times faster than traditional passwords.

Formal methods analysis of the FIDO2 standard has revealed potential weaknesses in the underlying protocols that warrant attention from security professionals. The research particularly focuses on the implementation of synced passkeys, which enable cross-device access through passkey providers. These findings support recent expert warnings about interoperability concerns in FIDO2 implementations.


More

Finance Digest: Getting Authentication Right – A Challenge For The Financial Sector

In this article, FIDO Alliance Executive Director Brett McDowell explains why financial services firms need…

Read More →

MakeUseOf: It’s Time to Stop Using SMS and 2FA Apps for Two-Factor Authentication

In this article, MakeUseOf explains why a physical FIDO U2F security key is more secure…

Read More →

Computerworld: What is Windows Hello? Microsoft’s biometrics security system explained

Anoosh Saboori, senior program manager lead at Microsoft tells Computerworld that Windows Hello lets a…

Read More →