Passkey technology is elegant, but it’s most definitely not usable security

Just in time for holiday tech-support sessions, here’s what to know about passkeys.

It's that time again, when families and friends gather and implore the more technically inclined among them to troubleshoot problems they're having behind the device screens all around them. One of the most vexing and most common problems is logging into accounts in a way that's both secure and reliable.

Using the same password everywhere is easy, but in an age of mass data breaches and precision-orchestrated phishing attacks, it's also highly unadvisable. Then again, creating hundreds of unique passwords, storing them securely, and keeping them out of the hands of phishers and database hackers is hard enough for experts, let alone Uncle Charlie, who got his first smartphone only a few years ago. No wonder this problem never goes away.

Passkeys—the much-talked-about password alternative to passwords that have been widely available for almost two years—was supposed to fix all that. When I wrote about passkeys two years ago, I was a big believer. I remain convinced that passkeys mount the steepest hurdle yet for phishers, SIM swappers, database plunderers, and other adversaries trying to hijack accounts. How and why is that?

Read full article

Comments

Geschichten am laufenden Band: Sci-Fi-Anthologien von Twilight Zone bis Black Mirror

Science-Fiction ist fester Bestandteil des Serienfernsehens. Besonders interessant sind Anthologien, die unterschiedliche Geschichten bieten können. Von Peter Osteried (Science-Fiction, Stephen Hawking)

Science-Fiction ist fester Bestandteil des Serienfernsehens. Besonders interessant sind Anthologien, die unterschiedliche Geschichten bieten können. Von Peter Osteried (Science-Fiction, Stephen Hawking)

(g+) Web Scraping mit Regex: So viele schöne Muster

Mit Regex lassen sich Muster in Texten aufspüren und extrahieren. Wie das zusammen mit Python geht – und wann man es besser nicht nutzt. Von Antony Ghiroz (Web Scraping mit Python, Python)

Mit Regex lassen sich Muster in Texten aufspüren und extrahieren. Wie das zusammen mit Python geht - und wann man es besser nicht nutzt. Von Antony Ghiroz (Web Scraping mit Python, Python)