February 3, 2023

CyberWire: NIST on phishing resistance

According to NIST Special Publication DRAFT 800-63-B4, a phishing-resistant authenticator offers “the ability of the authentication protocol to detect and prevent disclosure of authentication secrets and valid authenticator outputs to an impostor relying party without reliance on the vigilance of the subscriber.” Two examples of phishing-resistant authenticators are PIV cards for US Federal employees and FIDO authenticators paired with W3C’s Web Authentication API for the private sector.

MORE FIDO in the News


Bleeping Computer: Okta – Hackers target IT help desks to gain Super Admin, disable MFA

Identity and access management company Okta released a warning about...

September 12, 2023

Security Magazine: Embracing a company culture of cybersecurity starts at the top

Andrew’s byline where he discusses how cybersecurity needs to be...


Forbes: Cyber Autumn: Captivating Cybersecurity Conferences to Dive Into This October 2023

Authenticate 2023 is the go-to event for everything related to...

September 1, 2023

The Verge: X Wants Permission to Start Collecting Your Biometric Data and Employment History

X Wants Permission to Start Collecting Your Biometric Data and...