[18843] in Privacy_Forum
[ PRIVACY Forum ] Passkeys still suck
daemon@ATHENA.MIT.EDU (PRIVACY Forum mailing list)
Sat May 4 13:59:45 2024
Date: Sat, 4 May 2024 10:51:25 -0700
To: privacy-dist@vortex.com
Content-Disposition: inline
MIME-Version: 1.0
Message-ID: <mailman.8660.1714845085.2980.privacy@vortex.com>
From: PRIVACY Forum mailing list <privacy@vortex.com>
Reply-To: PRIVACY Forum mailing list <privacy@vortex.com>
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"; Format="flowed"
Errors-To: privacy-bounces+privacy-forum=mit.edu@vortex.com
Passkeys still suck. I don't recommend them. You will get locked out
someday. The implementations are mostly terrible, and in many cases
are interfering with the use of more secure methods such as FIDO
security keys. I keep hearing from Google users who accepted Google's
pushes to use passkeys and then got locked out of their accounts due
to device issues and related confusion. Does Google care about them?
NOPE. Just like always, if you're not in the majority of users, Google
will just let you swing in the wind without access to your data.
Passkeys are making Google's notoriously bad account recovery problems
even worse. -L
- - -
--Lauren--
Lauren Weinstein
lauren@vortex.com (https://www.vortex.com/lauren)
Lauren's Blog: https://lauren.vortex.com
Mastodon: https://mastodon.laurenweinstein.org/@lauren
Founder: Network Neutrality Squad: https://www.nnsquad.org
PRIVACY Forum: https://www.vortex.com/privacy-info
Co-Founder: People For Internet Responsibility
Tel: +1 (818) 225-2800
_______________________________________________
privacy mailing list
https://lists.vortex.com/mailman/listinfo/privacy