Hacker News new | ask | show | jobs
by pabs3 1291 days ago
Apparently it is possible to make WebAuthn phishable:

https://mjg59.dreamwidth.org/62175.html https://news.ycombinator.com/item?id=33810984

1 comments

That's only for sites acting as a oauth2 authorization server, right?