Passkeys are the future of authentication, offering enhanced security and convenience over passwords, but widespread adoption faces challenges that the NCSC is working to resolve.

What’s wrong with passwords – why do we need passkeys?

Most cyber harms that affect citizens occur through abuse of legitimate credentials. That is, attackers have obtained the victim’s password somehow – whether by phishing or exploiting the fact the passwords are weak or have been reused.

Passwords are just not a good way to authenticate users on the modern internet (and arguably weren’t suitable back in the 1970s when the internet was used by just a few academics). Adding a strong – phishing-resistant – second factor to passwords definitely helps, but not everyone does this and not every type of Multi-Factor Authentication (MFA) is strong.


More

borse.de: GoTrust Idem Key is the first FIDO security key that enables access to MojeID’s Czech government and high-security EU eIDAS services

GoTrustID Inc (GoTrust) today announced that Idem Keys with FIDO2 Security Level 2 certification will…

Read More →

GIGA: Google Chrome: This important feature is years overdue

Google, Apple and Microsoft want to say goodbye to the principle of passwords altogether. Instead,…

Read More →

Netzpalaver: Phishing-resistant authentication methods

Many of the implemented authentication methods are not phishing-resistant, as the current case shows. One…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.