Retail lags in authentication modernization, but not because providers aren’t interested in upgrading. It’s because customers actively reject change. Familiarity, ease of implementation and legacy system compatibility all mean that very few retailers offer anything beyond usernames and passwords, not even two-factor (2FA) and multi-factor authentication (MFA).

Ecommerce sites have experimented with magic links, an authentication method that is a little higher friction but is still a viable passwordless alternative. Meanwhile, biometric authentication (think fingerprints and facial recognition) is gaining popularity among less technical users, even if it’s simply to unlock their smartphones. Passkeys, another passwordless authentication method, leverage biometrics or a PIN to let consumers confirm a purchase with just a tap or a quick selfie.


More

The Register: Password killer FIDO2 comes bounding into Azure Active Directory hybrid environments

FIDO2 is now supported by hybrid Azure AD-joined Windows 10 devices in Azure Active Directory,…

Read More →

Forbes: Apple Just Made A Striking New Security Move That Could Impact All Users

Apple has joined the FIDO Alliance as a board member, taking its place among giants…

Read More →

Engadget: Google offers free Titan security keys to help secure political campaigns

In a move to help tighten security within political campaigns, Google has announced plans to…

Read More →