Recent academic research has revealed new insights into the security considerations surrounding FIDO2 authentication and synced passkeys, highlighting both the strengths and potential vulnerabilities of current authentication systems. The analysis comes at a time when major technology companies are increasingly adopting passkey technology, with Microsoft reporting login times three times faster than traditional passwords.

Formal methods analysis of the FIDO2 standard has revealed potential weaknesses in the underlying protocols that warrant attention from security professionals. The research particularly focuses on the implementation of synced passkeys, which enable cross-device access through passkey providers. These findings support recent expert warnings about interoperability concerns in FIDO2 implementations.


More

TechCrunch: X adds support for passkeys on iOS after removing SMS 2FA support last year

X, formerly known as Twitter, has introduced support for passkeys, a secure login method for…

Read More →

Computer Weekly: Thanks to AI tools, attackers also have an easy time of it

Instead of fighting AI with AI, it’s time for companies to rewrite the rules and…

Read More →

Professional Security Magazine: Mitigating AI security risks

Major tech companies and members of the FIDO Alliance such as Google, Apple, and Microsoft have been…

Read More →