Comment on Big Tech passkey implementations are a trap | Proton
WolfLink@lemmy.ml 7 months agoTraditional 2FA (assuming you mean apps with codes) can be done from the same device (if you have the app with the codes installed on that device).
It doesn’t defeat the purpose of 2FA. The 2 factors are 1. The password and 2. You are in possession of a device with the 2FA codes. The website doesn’t know about the device until you enter the code.
plz1@lemmy.world 7 months ago
Yeah my point is it does not protect the local device well. It does protect well from remote compromise though.