##FIDO2
📱 Trying to sign in on your phone, and your passkey is sitting on your computer instead?

Full breakdown, demo included, here: agderinthe.cloud/2026/09/23/p...

#EntraID #Passkeys #FIDO2 #IdentitySecurity #ZeroTrust
Passkeys on the laptop are easy. The phone? Not so much!
Back in February I wrote about how to onboard passkeys safely with Temporary Access Pass, and in Passkeys enabled ≠ phishing-resistant I wrote about tightening Conditional Access afterwards. But I …
agderinthe.cloud
September 23, 2026 at 7:17 AM
September 22, 2026 at 4:34 AM
Microsoft will retire the Calendar, People, and Files Microsoft 365 companion apps on Dec. 16, 2026. Microsoft has stopped installing them via updates and plans related Entra ID and SMS sign-in changes. #Microsoft365 #EntraID #FIDO2
Microsoft To Retire Microsoft 365 Companion Apps In December
Microsoft will retire the Calendar, People, and Files Microsoft 365 companion apps on December 16, 2026, and admins are being urged to remove them from managed devices. Microsoft has already stopped installing the apps through Microsoft 365 updates and also reminded organizations to prepare for upcoming Entra ID and SMS sign-in changes. #Microsoft365 #EntraID #FIDO2
www.hendryadrian.com
September 21, 2026 at 7:15 PM
Entra ID blocks SMS first-factor sign-ins Feb 1, 2027—passkeys or FIDO2 keys needed instead. #EntraID #IdentitySecurity #PhishingResistance #FIDO2 #Microsoft #Passwordless thedailytechfeed.com/microsoft-en...
September 21, 2026 at 3:13 PM
September 14, 2026 at 5:27 PM
Passkeys vs. Passwörter: Wie WebAuthn wirklich funktioniert, wer was anbietet und wie man es einführt

Ein Passwort ist ein Geheimnis, das beide Seiten aufbewahren müssen. Ein Passkey ist ein Schlüsselpaar, das nur eine Seite jemals besitzt. Was das auf Protokollebene…

#passkeys #webauthn #fido2
Passkeys vs. Passwörter: Wie WebAuthn wirklich funktioniert, wer was anbietet und wie man es einführt
Ein Passwort ist ein Geheimnis, das beide Seiten aufbewahren müssen. Ein Passkey ist ein Schlüsselpaar, das nur eine Seite jemals besitzt. Was das auf Protokollebene wirklich bedeutet — mit drei Diagrammen für Registrierung, Login und die Sync-Ökosysteme — plus wer 2026 Passkeys anbietet und wie man sie einführt, ohne die Kontowiederherstellung zu zerstören.
www.alekseialeinikov.com
September 14, 2026 at 1:10 PM
Passkeys vs Passwords: How WebAuthn Actually Works, Who Builds What, and How to Roll It Out

A password is a secret both sides have to keep. A passkey is a key pair only one side ever holds. This is what that actually means at the protocol level — with three diag…

#passkeys #webauthn #fido2
Passkeys vs Passwords: How WebAuthn Actually Works, Who Builds What, and How to Roll It Out
A password is a secret both sides have to keep. A passkey is a key pair only one side ever holds. This is what that actually means at the protocol level — with three diagrams for registration, login and the sync fabrics — plus who ships passkeys today and how to roll them out without breaking account recovery.
www.alekseialeinikov.com
September 14, 2026 at 1:10 PM
Les passkeys vont tuer le partage de compte ? Faux : ils se partagent nativement chez Apple et dans tous les gestionnaires. Ce qu'ils tuent, c'est le partage informel. Et ce non-dit freine leur adoption bien plus qu'on ne le pense.

#Passkeys #FIDO2 #Potatosecurite #IAM #DSI
September 14, 2026 at 6:43 AM
Les passkeys vont tuer le partage de compte ? Faux : ils se partagent nativement chez Apple et dans tous les gestionnaires. Ce qu'ils tuent, c'est le partage informel. Et ce non-dit freine leur adoption bien plus qu'on ne le pense.

#Passkeys #FIDO2 #Cybersecurite #IAM #DSI
Passkeys et partage de compte : la mauvaise nouvelle n’est pas celle que vous croyez
Il existe une idée reçue, agréablement simple, qui circule dans les couloirs des directions informatiques depuis quelques mois. Elle tient en une phrase : le jour où tous les services numériques, y compris les services grand public, seront passés aux passkeys, le partage de compte appartiendra au passé. Fin de l'histoire, fin du mot de passe Netflix envoyé par SMS au neveu, fin du fichier Excel des identifiants de l'association, fin du compte générique qui traîne depuis douze ans dans un service comptable.
blog.calipia.com
September 14, 2026 at 6:43 AM
Passkeys improve auth, but 39 documented attack methods target enrollment, recovery, and UI layers around them. Stronger service settings and dedicated biometric hardware can narrow the attack surface. #Passkeys #FIDO2 #WebAuthn
39 New Methods That Compromise Passkey Authentication
Passkeys strengthen authentication with public key cryptography, but 39 publicly documented attack methods show that threats now focus on the surrounding software, enrollment, recovery, and user-interface layers. Dedicated biometric hardware, combined with strict service configuration, can greatly reduce the attack surface and better protect enterprise identities. #SpecterOps #PassThePasskey #FIDO2 #WebAuthn #Token
www.hendryadrian.com
September 4, 2026 at 3:45 PM
Soft Giken Launches Offline FIDO2 Two-Factor Authentication Solution for Windows#Japan#Tokyo#FIDO2#Soft_Giken#YubiOn
Soft Giken Launches Offline FIDO2 Two-Factor Authentication Solution for Windows
Soft Giken has recently announced its FIDO2-based two-factor authentication solution, YubiOn FIDO Logon Standalone, allowing Windows users to enhance security offline without server setups.
third-news.com
September 2, 2026 at 7:15 AM
完全オフライン対応のFIDO2二要素認証ソリューション「YubiOn FIDO Logon Standalone」登場#FIDO2#YubiOn#ソフト技研

株式会社ソフト技研より、インターネット非接続環境でも利用できるFIDO2二要素認証ソリューション「YubiOn FIDO Logon Standalone」が提供開始。セキュリティ強化に最適な製品です。
完全オフライン対応のFIDO2二要素認証ソリューション「YubiOn FIDO Logon Standalone」登場
株式会社ソフト技研より、インターネット非接続環境でも利用できるFIDO2二要素認証ソリューション「YubiOn FIDO Logon Standalone」が提供開始。セキュリティ強化に最適な製品です。
tokyo.publishing.3rd-in.co.jp
September 2, 2026 at 7:06 AM
オンプレミス環境で安心の二要素認証を提供する新製品#東京都#渋谷区#FIDO2#ソフト技研#YubiOn

株式会社ソフト技研が提供する「YubiOn FIDO Logon Standalone」。オフラインでの強固な二要素認証を実現し、安全な業務環境をサポートします。
オンプレミス環境で安心の二要素認証を提供する新製品
株式会社ソフト技研が提供する「YubiOn FIDO Logon Standalone」。オフラインでの強固な二要素認証を実現し、安全な業務環境をサポートします。
news.3rd-in.co.jp
September 2, 2026 at 6:49 AM
Chave FIDO2 sem tela: ela digita o OTP por você

Você sabia que existe token de segurança que digita o código sozinho? 🔐

No vídeo, mostro como funciona uma chave FIDO2 sem tela:
• Não é keylogger: o OTP só é enviado quando você aperta o botão
• Como não tem […]

[Original post on mastodon.social]
August 29, 2026 at 9:12 AM
Security key configurada em minutos! 🚀

🚨 Já pensou em configurar sua security key sem complicação?

No vídeo, te mostro o caminho mais rápido:

• ✅ Acesse o site deles: picokis.com
• 📥 Vá direto para a página de download no GitHub
• 🔧 Escolha o seu […]

[Original post on mastodon.social]
August 29, 2026 at 9:12 AM
Mit #passtakey wurden 3 schwere Sicherheitslücken in Verbindung mit #google #Chrome und #passkeys veröffentlicht, die unter #windows eine komplette Übernahme aller Passkeys ermöglichen.

Inwiefern sich das Risiko einer fehlerhaften Softwareimplementierung kompensieren lässt, habe ich auf meinem […]
Original post on graz.social
graz.social
August 22, 2026 at 7:45 AM
#FIDO2 tokens aren't just for web logins anymore. Using them for #LUKS2 disk #encryption, session logins, and #SSH key binding. #oSC26 youtu.be/WLSVrcsBOZU
openSUSE Conference 2026 - FIDO2 Tokens in Practice
YouTube video by openSUSE
youtu.be
August 20, 2026 at 1:33 PM
This #yubico #yubikey Standard from approximately 2012 was on my personal key ring ever since on a daily basis. It has been my first FIDO2 token.

It now ceased to work after approx. 14 years as it's no longer recognized by a computer when plugged in […]

[Original post on graz.social]
August 15, 2026 at 12:01 PM
Three Passkey Attacks Can Extract Synced Private Keys or Bypass Phishing-Resistant MFA

https://blindthoughts.com/passkey-attacks-recover-private-keys-bypass-mfa

#passkeys #fido2 #mfa #authentication #vulnerability
August 10, 2026 at 1:17 PM
I wish #keepassxc had #luks 2 like slot based encryption so you could have a #fido2 with pin in a slot to easy acces while having a password file for recovery etc.

also i wish it had proper #fido2 #hmac extension based unlock instead of current security key support so you could use auto […]
Original post on infosec.exchange
infosec.exchange
August 3, 2026 at 12:38 PM
🔑 Entra ID auth policy: control MFA methods tenant-wide. Modern approach, replaces legacy. Enable/disable globally or target users. 💪 Tailor your MFA strategy here.
👉Full video: youtu.be/JASvAHNszGI
#Microsoft #EntraID #MFA #FIDO2 #ZeroTrust #CloudSecurity #MVPBuzz #ITPro
July 30, 2026 at 8:02 PM