Tag

Passwordless

All articles tagged with #passwordless

Microsoft Pushes Passkeys, Phasing Out SMS 2FA for Accounts
technology5 days ago

Microsoft Pushes Passkeys, Phasing Out SMS 2FA for Accounts

Microsoft is phasing out SMS-based two-factor authentication for personal Microsoft accounts in favor of passwordless options like passkeys and verified email, citing SMS vulnerabilities to fraud; users can set up a passkey through Advanced Security Options (Face, Fingerprint, PIN, or Security Key) and store it on a device, though passkeys can be less convenient on new or temporary devices. No firm date for a full rollout was given, and SMS may remain as a fallback via verified email until then.

Microsoft shifts to passwordless sign-ins, phasing out SMS codes
technology6 days ago

Microsoft shifts to passwordless sign-ins, phasing out SMS codes

Microsoft will retire SMS-based authentication for personal accounts and push passwordless sign-ins using passkeys, with verified secondary emails for account recovery. The new flow offers on-device passkeys that can be stored in password managers, smartphones, or Windows Hello biometrics, aiming to curb phishing and SIM-swapping. While sign-in could be faster and more secure, users accustomed to SMS verification may face friction during the transition.

Microsoft ends SMS sign-ins, doubles down on passwordless on Windows 11
technology7 days ago

Microsoft ends SMS sign-ins, doubles down on passwordless on Windows 11

Microsoft will stop using SMS verification for personal Microsoft accounts, phasing out SMS as a method for two-factor authentication and account recovery in favor of passwordless options like passkeys, authenticator apps, and verified backup emails. Microsoft argues SMS is insecure and a frequent fraud vector (including SIM-swaps), and promotes passkeys that rely on device biometrics and hardware-backed keys. The transition is cross-device compatible but may cause friction for power users and scenarios like virtual machines where a hardware-based sign-in isn’t available.

Entra passkeys enable phishing-resistant sign-ins on Windows
technology2 months ago

Entra passkeys enable phishing-resistant sign-ins on Windows

Microsoft is rolling out Entra passkeys on Windows to enable phishing-resistant, passwordless sign-in via Windows Hello. The opt-in public preview runs mid-March to late April 2026 for worldwide tenants (government-cloud timelines differ) and extends passwordless sign-in to unmanaged Windows devices. Passkeys are device-bound and per-account (no cross-device syncing), with multiple accounts able to coexist on one machine; each Entra account must register its own passkey. Admins must enable Passkeys (FIDO2) in Entra, create a Windows Hello profile with required AAGUIDs, and assign it to groups.

ISO 27001 in a Passwordless World: The Passkey Migration Playbook
technology3 months ago

ISO 27001 in a Passwordless World: The Passkey Migration Playbook

The article argues that enterprises should migrate from password-based authentication to passkeys (FIDO2/WebAuthn) to strengthen security and stay compliant with ISO/IEC 27001, detailing how passkeys work, which controls they map to, practical migration steps, risk considerations (device loss, downgrade attacks), and best practices for phased rollout and documentation, with Passwork offering migration support.

Microsoft Leads Shift to Passwordless Future with Passkeys for Billions
technology1 year ago

Microsoft Leads Shift to Passwordless Future with Passkeys for Billions

Microsoft is moving towards a passwordless future by promoting the use of passkeys, as password-related cyberattacks have surged by 200%. The company plans to eliminate passwords for a billion users, highlighting that passkeys offer faster and more secure sign-ins through biometric data or PINs, which are less vulnerable to phishing attacks. Despite the challenge of convincing the last 30-40% of users to adopt this change, Microsoft reports significant progress, with millions already deleting their passwords in favor of passkeys.

Windows 11 to Replace Millions of Passwords with New Security Feature
technology1 year ago

Windows 11 to Replace Millions of Passwords with New Security Feature

Microsoft is rolling out an update to Windows 11 that supports third-party passkey providers, moving towards a passwordless future. This update will allow users to choose third-party passkey options alongside the native Windows Hello feature, enhancing login security. The update is part of Microsoft's broader strategy to replace traditional passwords with more secure passkey systems, with gradual implementation expected in the coming months.

The Future of Login: Passkeys Poised to Replace Passwords
technology1 year ago

The Future of Login: Passkeys Poised to Replace Passwords

1Password and Google are advocating for the adoption of passkeys, a more secure and user-friendly alternative to traditional passwords. Passkeys, which are based on FIDO and WebAuthn standards, offer enhanced security by using a public-private key system that is resistant to phishing and hacking. Adoption of passkeys is growing, with 1Password reporting significant increases in usage among its users and major companies like Amazon and Walmart implementing them. Despite their advantages, widespread adoption is hindered by users' familiarity with passwords, necessitating public education on passkey benefits.

Google's Titan Security Keys: Revolutionizing Password-Free Authentication
technology2 years ago

Google's Titan Security Keys: Revolutionizing Password-Free Authentication

Google has released two new versions of its Titan Security Key, featuring USB-C and USB-A connections, as well as NFC support. These keys are compatible with FIDO2 and can serve as two-factor authentication security for various online accounts. With the ability to hold over 250 unique passkeys, they offer a passwordless solution that goes beyond traditional two-factor technologies by using cryptography to verify the legitimacy of the key and protect against phishing attacks. Users can authenticate by connecting the key and verifying with a PIN, eliminating the need for passwords.

"Tech Giants Embrace Passkeys for Enhanced Cybersecurity: Here's How to Set Yours Up"
technology2 years ago

"Tech Giants Embrace Passkeys for Enhanced Cybersecurity: Here's How to Set Yours Up"

Amazon has joined the passwordless movement by introducing passkeys as an alternative to traditional passwords. Passkeys allow users to log in to their Amazon accounts using biometric authentication, such as fingerprint or face scan, instead of a password. While switching to passkeys is not mandatory, users can set up their Amazon passkey by going to their Account page and selecting Login & Security. Passkeys are considered more secure and convenient than passwords, and Amazon plans to expand passkey support to other apps in the future.

Amazon Introduces Passwordless Sign-In for Enhanced Account Security
technology2 years ago

Amazon Introduces Passwordless Sign-In for Enhanced Account Security

Amazon is introducing passkey support for its online site and mobile shopping apps, allowing customers to log in using their device's biometrics without the need for a password or two-factor authentication. Passkeys, built on WebAuthn technology, generate two different keys: one stored by the website or service and a private key stored on the user's device. Passkeys can be enabled through Amazon's website or iOS app, with Android support coming soon. This move follows a trend of companies adopting passwordless authentication methods, although passwords are still retained by most companies for the time being.

"LinkedIn and X Revolutionize Security: Passwords No Longer Needed"
technology2 years ago

"LinkedIn and X Revolutionize Security: Passwords No Longer Needed"

LinkedIn and X (formerly Twitter) are reportedly working on passkey support, following the trend of apps and services moving away from traditional passwords. Passkeys, based on FIDO Alliance and W3C standards, replace passwords with cryptographic key pairs, improving security. Apple is involved in the development of passkeys, with iOS 17 and macOS 14 Sonoma generating Apple ID passkeys for iCloud.com and Apple.com. TikTok and WhatsApp also have plans to adopt passkey support.

The Rise of Passwordless Authentication: Pros, Support, and Solutions
cybersecurity2 years ago

The Rise of Passwordless Authentication: Pros, Support, and Solutions

A survey conducted among attendees of Black Hat USA 2023 reveals that 54% consider passwordless authentication a viable concept, while 79% believe that passwords are evolving or becoming obsolete. The majority of respondents use additional authentication methods such as multi-factor authentication (73%), authenticator apps (57%), and biometrics (40%) to protect their passwords. Furthermore, 52% use a password manager, 34% use a privileged access management (PAM) solution, and 21% are already using passkeys. The survey highlights the importance of moving beyond passwords, as 75% of respondents acknowledge that social engineering and stolen identities/passwords are the fastest ways to access a network. Only 12% believe that organizations are ahead of nation-states and cybercriminals in terms of cybersecurity, and opinions on the threat of artificial intelligence (AI) programs vary.

Windows 11 introduces built-in passkey manager for Windows Hello.
technology2 years ago

Windows 11 introduces built-in passkey manager for Windows Hello.

Microsoft is introducing a built-in passkey manager for Windows Hello in Windows 11 to enhance security and user experience. Passkeys are unique codes linked to specific devices that allow users to log in to websites and applications using personal identification numbers or biometric authentication. Passkeys provide protection against phishing attacks and eliminate the need to remember and manage multiple passwords. Users can create and manage passkeys using the new passkey management dialog integrated into the Windows settings. Passkeys are phish-resistant, recoverable, and faster for users, making them a more secure and convenient alternative to passwords.