Comment on Passkeys might really kill passwords

Feathercrown@lemmy.world ⁨8⁩ ⁨months⁩ ago

Ok so 2fa is based on things you know (passwords) things you have (devices), and things you are (biometrics).

I could see passkeys replacing the phone portion of a 2fa, but replacing a password? That can both invalidate the point of 2fa (verifies you have a device twice) and kill the benefits of having a password (if I lose my device I can still login, if it’s stolen the attacker can’t access all of my accounts).

source
Sort:hotnewtop