GitHub will begin its official rollout of two-factor authentication for developers who contribute code on the platform, starting March 13. GitHub added that it will support SMS text messages as a second factor, while testing FIDO Alliance passkeys internally to improve the security posture. “It is true that SMS 2FA can be easily phished by hackers as it relies on knowledge-based credentials. But GitHub recognizes these risks and strongly recommends using security keys and TOTPS wherever possible for greater security – [and] will continue to offer SMS for 2FA – which is better than removing the option entirely,” said Andrew Shikiar, executive director of the FIDO Alliance.


More

Global Security Mag: FIDO Alliance endorses the Zero Trust strategy finalised by the Office of Management and Budget (OMB)

The article picks up the Zero Trust strategy announcement, endorsed by the Alliance, aiming to…

Read More →

FinTech Magazine: Delegated Authentication – Abandon Friction, Not the Cart

This opinion piece explores how eCommerce retailers can overcome the age-old headache of cart abandonment…

Read More →

Wall Street Journal: Tech that will Change Your Life in 2022

Analyzing industry trends and insights from industry experts, this piece offers predictions for tech in…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.