GitHub will begin its official rollout of two-factor authentication for developers who contribute code on the platform, starting March 13. GitHub added that it will support SMS text messages as a second factor, while testing FIDO Alliance passkeys internally to improve the security posture. “It is true that SMS 2FA can be easily phished by hackers as it relies on knowledge-based credentials. But GitHub recognizes these risks and strongly recommends using security keys and TOTPS wherever possible for greater security – [and] will continue to offer SMS for 2FA – which is better than removing the option entirely,” said Andrew Shikiar, executive director of the FIDO Alliance.


More

ID Tech: FIDO Opens June Interoperability Testing Window for Certification Candidates

The FIDO Alliance has opened its June interoperability testing event, giving FIDO2 and FIDO UAF…

Read More →

Frontier Enterprise: CSA: More authentication does not mean better security

Why do users still get hacked? In the past, it was often because of weak…

Read More →

Global Banking and Finance Review: The Growing Role of FIDO and Passkeys in Banking Authentication

Banking’s Authentication Problem Has Changed Banks are no longer fighting simple password reuse. They’re facing real-time…

Read More →


123327 Next

Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.