Phishing refers to a variety of attacks that are intended to convince you to forfeit sensitive data to an imposter. These attacks can take a number of different forms; from spear-phishing (which targets a specific individual within an organization), to whaling (which goes one step further and targets senior executives or leaders). Furthermore, phishing attacks take place over multiple channels or even across channels; from the more traditional email-based attacks to those using voice – vishing – to those coming via text message – smishing. Regardless of the type or channel, the intent of the attack is the same – to exploit human nature to gain control of sensitive information (citation 1). These attacks typically make use of several techniques including impersonated websites, attacker-in-the-middle, and relay or replay to achieve their desired outcome.


More

National Cyber Security Centre (NCSC): Passkeys are more secure than traditional ways to log in

Passkeys are more secure than traditional ways to log in Passkeys offer a more usable,…

Read More →

Security IT News: The State of Biometric Security in the Age of AI Fraud Report Released

Aware, Inc. released a new report, The State of Biometric Security in the Age of AI Fraud,…

Read More →

TechTarget Search Security: How to roll out an enterprise passkey deployment

CISOs know that the human element can be the weakest link in an enterprise’s cybersecurity…

Read More →


123321 Next

Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.