|
|
|
|
|
by TacticalCoder
1254 days ago
|
|
Do old Yubikeys and similar U2F devices, which do still work for webauthn, still work for sites that a going to require a "passkey"? Or are MS+Google+Apple doing an "embrace, extend and extinguish" on webauthn? Are the "small adjustements that ever so slightly reduces the security" sufficient to effectively kick security keys hardware vendor out of the game? |
|
The "Big Three" are on the FIDO board, along with 1Password. They can't really do the extinguish thing, and it really isn't in their interst to do so.
An no, the small tweaks don't kick anyone out of the game.
There will be other, perhaps more trusted, companies that you can use to move your passkeys around between eco-systems.