Comment on Google will now make passkeys the default for personal accounts

<- View Parent
Tibert@jlai.lu ⁨1⁩ ⁨year⁩ ago

So first, no, all the fils should be accessible : There are special not “files”, but keys, like the key used for thys system. These keys pose a huge security risk of they are leaked somehow. The key can be something used to encrypt the device/disk. Encrypt a connection, and other things associated with encryption.

And because of that security risk, they are often stored in a special chip or simulated chip (like the simulated tpm 2.0 on pc processors), and not just “stored” so any malware or who knows what can access them just by reading the drive.

Second, the key is never transfered. When you connect to another device, that other device will get another key. Or maybe could it be backed up somehow in case of recovery on another phone? But that would defeat the entire purpose of this.

How Google can do to allow you to connect to another device if the first one is lost, not sure. But it would certainly either ask for a password and a 2fa method.

source
Sort:hotnewtop