Comment on Why have so many services started using single-factor passwordless authentication in the last little while?

<- View Parent
lovely_reader@lemmy.world ⁨2⁩ ⁨days⁩ ago

Yeah, password on its own is weak. Any factor + password will always be a lot more secure than password alone OR the other factor alone, but pairing stronger factors of course results in stronger pairings.

Passkey is a device check (the key lives on your device and nowhere else), so it relies on your device security, even if it’s just a PIN…and there has to be a backup option in case you lose access to that device, in which case the account only ends up as secure as that authentication method…which hopefully isn’t password alone.

source
Sort:hotnewtop