vegeta@lemmy.world to Technology@lemmy.worldEnglish · 24 days agoNew Pass-ta-key attack reveals all the things we didn't know about passkeysarstechnica.comexternal-linkmessage-square3linkfedilinkarrow-up10
arrow-up10external-linkNew Pass-ta-key attack reveals all the things we didn't know about passkeysarstechnica.comvegeta@lemmy.world to Technology@lemmy.worldEnglish · 24 days agomessage-square3linkfedilink
minus-squarebecausechemistry@piefed.sociallinkfedilinkEnglisharrow-up1·24 days agoWhat a terrible headline. Better: “Windows has such terrible security architecture that a compromised application can steal a user’s passwords, passkeys, and literally anything else.”
minus-squareeleijeep@piefed.sociallinkfedilinkEnglisharrow-up1·24 days agoThis is why passkeys were always supposed to be hardware tokens.
minus-squareOptional@lemmy.worldlinkfedilinkEnglisharrow-up1·24 days agoAnd yet were almost immediately converted to local storage for adoption reasons. Per the article.
What a terrible headline.
Better: “Windows has such terrible security architecture that a compromised application can steal a user’s passwords, passkeys, and literally anything else.”
This is why passkeys were always supposed to be hardware tokens.
And yet were almost immediately converted to local storage for adoption reasons. Per the article.