Facebook rolls out passkey support to fight phishing attacks – The Verge




Facebook rolls out passkey support to fight phishing attacks - The Verge

🔍 Summary:

Facebook is set to enhance the security of its mobile app by introducing support for passkeys, a more secure login method that utilizes device authentication like fingerprints, face scans, or PINs. This feature will make it tougher for malicious actors to access user accounts since passkeys cannot be stolen, guessed, or leaked, and they also safeguard against phishing scams. Unlike traditional passwords, passkeys are linked to specific domains by browsers, preventing them from being triggered on fraudulent websites.

Although Meta has not specified an exact timeline, they have announced that passkey support will be available soon on both Android and iOS platforms, and will later extend to the Messenger app. Users will still have the option to use passwords or other methods such as physical security keys or two-factor authentication. Additionally, passkeys will be usable for autofilling payment information on Meta Pay.

Passkeys function by generating two keys through WebAuthn technology: a public key stored by the service and a private key kept on the user’s device. This system also allows for recovery options through other devices or methods like phone or email reauthentication, or hardware security keys, in case the primary device is lost or damaged.

Major tech companies like Google, Microsoft, Apple, and other Meta-owned platforms like WhatsApp have already adopted this secure sign-in method. Furthermore, passkeys are supported by Apple’s and Google’s password vaults, as well as password managers such as 1Password and Dashlane, enhancing their integration across various services and devices.

📌 Source: https://www.theverge.com/news/689410/facebook-passkey-support-phishing-attacks

위로 스크롤