Retail lags in authentication modernization, but not because providers aren’t interested in upgrading. It’s because customers actively reject change. Familiarity, ease of implementation and legacy system compatibility all mean that very few retailers offer anything beyond usernames and passwords, not even two-factor (2FA) and multi-factor authentication (MFA).

Ecommerce sites have experimented with magic links, an authentication method that is a little higher friction but is still a viable passwordless alternative. Meanwhile, biometric authentication (think fingerprints and facial recognition) is gaining popularity among less technical users, even if it’s simply to unlock their smartphones. Passkeys, another passwordless authentication method, leverage biometrics or a PIN to let consumers confirm a purchase with just a tap or a quick selfie.


More

Forbes: Face It — Biometrics to be big in cybersecurity

With recent FIDO implementations from Google and Microsoft, strong authentication has seen big momentum –…

Read More →

The Inquirer: GitHub adds WebAuthn support for biometric and security key logins

GitHub now allows for login with WebAuthn, supporting security keys via Firefox, Chrome, macOS, Linux…

Read More →

SecurityWeek: Ready or Not, Here Comes FIDO: How to Prepare for Success

As we move into a passwordless world, now is the time for organizations to strategically…

Read More →