• 0 Posts
  • 100 Comments
Joined 1 year ago
cake
Cake day: June 9th, 2023

help-circle
















  • The user does not need to understand it. A user does not understand https or hashing and salting. Still, every one of these is important these days for online security.

    I am not a huge fan of passkeys themself, especially when the secrets are held by big tech, but they promise better security and protection against command n attacks like phishing.



  • ShortN0te@lemmy.mltoTechnology@lemmy.mlPasskeys: A Shattered Dream
    link
    fedilink
    arrow-up
    32
    arrow-down
    2
    ·
    2 months ago

    Passkeys are not passwords. When you authenticate using passkeys you will proof that you have the secret (passkey), but you will never reveal that secret to the service you are authentication against.

    So even if someone is able to steal that package containing the answer, that answer will not be valid a second time.