Skip to main content
institutional access

You are connecting from
Lake Geneva Public Library,
please login or register to take advantage of your institution's Ground News Plan.

Published loading...Updated

New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA

Summary by cybernoz.com
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist phishing. The attacks instead reused signed authentication material that Windows had exposed, abused a cloud-synced passkey system from malware already on the victim’s machine, and used a Windows Hello for Business key from a compromised user sessi…
DisclaimerThis story is only covered by news sources that have yet to be evaluated by the independent media monitoring agencies we use to assess the quality and reliability of news outlets on our platform. Learn more here.

3 Articles

Palo Alto Networks security researchers have found several ways in which attackers can take over password-protected accounts despite password login. However, the attacks presuppose that malware is already running on the victim's device. Passkeys are considered to be a particularly safe alternative to passwords because users no longer have to enter secret access data. This eliminates many classic phishing and password theft attacks. However, the …

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • There is no tracked Bias information for the sources covering this story.

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

b2b-cyber-security.de broke the news on Sunday, August 16, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal