Tag

Passkeys

All articles tagged with #passkeys

Microsoft Pushes Passkeys, Phasing Out SMS 2FA for Accounts
technology4 days ago

Microsoft Pushes Passkeys, Phasing Out SMS 2FA for Accounts

Microsoft is phasing out SMS-based two-factor authentication for personal Microsoft accounts in favor of passwordless options like passkeys and verified email, citing SMS vulnerabilities to fraud; users can set up a passkey through Advanced Security Options (Face, Fingerprint, PIN, or Security Key) and store it on a device, though passkeys can be less convenient on new or temporary devices. No firm date for a full rollout was given, and SMS may remain as a fallback via verified email until then.

Microsoft shifts to passwordless sign-ins, phasing out SMS codes
technology5 days ago

Microsoft shifts to passwordless sign-ins, phasing out SMS codes

Microsoft will retire SMS-based authentication for personal accounts and push passwordless sign-ins using passkeys, with verified secondary emails for account recovery. The new flow offers on-device passkeys that can be stored in password managers, smartphones, or Windows Hello biometrics, aiming to curb phishing and SIM-swapping. While sign-in could be faster and more secure, users accustomed to SMS verification may face friction during the transition.

Microsoft ends SMS sign-ins, doubles down on passwordless on Windows 11
technology7 days ago

Microsoft ends SMS sign-ins, doubles down on passwordless on Windows 11

Microsoft will stop using SMS verification for personal Microsoft accounts, phasing out SMS as a method for two-factor authentication and account recovery in favor of passwordless options like passkeys, authenticator apps, and verified backup emails. Microsoft argues SMS is insecure and a frequent fraud vector (including SIM-swaps), and promotes passkeys that rely on device biometrics and hardware-backed keys. The transition is cross-device compatible but may cause friction for power users and scenarios like virtual machines where a hardware-based sign-in isn’t available.

Entra passkeys enable phishing-resistant sign-ins on Windows
technology2 months ago

Entra passkeys enable phishing-resistant sign-ins on Windows

Microsoft is rolling out Entra passkeys on Windows to enable phishing-resistant, passwordless sign-in via Windows Hello. The opt-in public preview runs mid-March to late April 2026 for worldwide tenants (government-cloud timelines differ) and extends passwordless sign-in to unmanaged Windows devices. Passkeys are device-bound and per-account (no cross-device syncing), with multiple accounts able to coexist on one machine; each Entra account must register its own passkey. Admins must enable Passkeys (FIDO2) in Entra, create a Windows Hello profile with required AAGUIDs, and assign it to groups.

Bitwarden Enables Windows 11 Sign-Ins With Vault-Stored Passkeys
technology2 months ago

Bitwarden Enables Windows 11 Sign-Ins With Vault-Stored Passkeys

Bitwarden now supports Windows 11 sign-ins using passkeys stored in its vault, enabling phishing-resistant, passwordless authentication across all plans (including free). Users enable Entra ID FIDO2 sign-in, register a Bitwarden-stored passkey, and log in by scanning a QR code with a mobile device. The passkey is stored in the Bitwarden vault and synced across devices, improving recovery options and reducing exposure by avoiding password transmission.

ISO 27001 in a Passwordless World: The Passkey Migration Playbook
technology3 months ago

ISO 27001 in a Passwordless World: The Passkey Migration Playbook

The article argues that enterprises should migrate from password-based authentication to passkeys (FIDO2/WebAuthn) to strengthen security and stay compliant with ISO/IEC 27001, detailing how passkeys work, which controls they map to, practical migration steps, risk considerations (device loss, downgrade attacks), and best practices for phased rollout and documentation, with Passwork offering migration support.

The Shift Toward Passwordless Security: Embracing Passkeys and Facial Recognition
technology4 months ago

The Shift Toward Passwordless Security: Embracing Passkeys and Facial Recognition

Passkeys are a secure and user-friendly alternative to passwords that are underutilized due to low awareness, misconceptions, and implementation challenges. Companies are encouraged to promote phased adoption and educate users on their benefits to improve security and user experience, especially as traditional methods become more vulnerable to AI-driven attacks.

Google Urges Gmail Users to Change Passwords Amid Security Concerns
technology9 months ago

Google Urges Gmail Users to Change Passwords Amid Security Concerns

Google has confirmed that many Gmail accounts have been compromised due to weak passwords and hackers gaining access. Most users are advised to change their passwords immediately, use strong, unique passwords managed by a dedicated password manager, enable two-factor authentication with an authenticator app, and adopt passkeys for enhanced security. The company emphasizes that only 36% of users regularly update their passwords, highlighting the need for improved security practices to prevent unauthorized access.