GitHub will begin its official rollout of two-factor authentication for developers who contribute code on the platform, starting March 13. GitHub added that it will support SMS text messages as a second factor, while testing FIDO Alliance passkeys internally to improve the security posture. “It is true that SMS 2FA can be easily phished by hackers as it relies on knowledge-based credentials. But GitHub recognizes these risks and strongly recommends using security keys and TOTPS wherever possible for greater security – [and] will continue to offer SMS for 2FA – which is better than removing the option entirely,” said Andrew Shikiar, executive director of the FIDO Alliance.


More

asmag Security & IoT: Passwordless authentication: From trend to ‘strategic imperative’

For modern IT or Internet users, logging in to a website or app using a…

Read More →

Meta Newsroom: Introducing Passkeys on Facebook for an Easier Sign-In

We’re introducing passkeys on Facebook for mobile devices, offering another tool to safeguard your privacy…

Read More →

MSN: Google Pushes 2 Billion Gmail Users to Adopt Passkeys Over Passwords

Google is making its biggest security push yet. The company strongly urges its 2 billion Gmail users to…

Read More →