this post was submitted on 14 Feb 2024
262 points (88.8% liked)

Technology

59211 readers
2751 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 

Passkeys: how do they work? No, like, seriously. It’s clear that the industry is increasingly betting on passkeys as a replacement for passwords, a way to use the internet that is both more secure and more user-friendly. But for all that upside, it’s not always clear how we, the normal human users, are supposed to use passkeys. You’re telling me it’s just a thing... that lives on my phone? What if I lose my phone? What if you steal my phone?

you are viewing a single comment's thread
view the rest of the comments
[–] degrix@lemmy.hqueue.dev 2 points 8 months ago (1 children)

The benefit of passkeys over passwords is that they're phishing resistant and use strong encryption. They're effectively an iteration on yubikeys meaning you can have as many (or as few) passkeys associated with a given login as you'd like. So, you can easily prevent there being a single point of failure in the system.

Passkeys are tied to accounts and devices and those devices are the only devices used for authentication. This means you can access your account form a public device without that device ever knowing your credentials provided you and your secure device are physically present so it avoids the whole keylogger issue.

[–] leftzero@lemmynsfw.com 1 points 8 months ago

This means you can access your account form a public device without that device ever knowing your credentials provided you and your secure device are physically presen

My secure device is in my other pants, though. I misplace my brain much less often.