Good for awareness but its not Novel at all. Its an incomplete, sensational and one sided PR by a given company
1. There is nothing novel about this, its a known behavior and has been in public domain for a while
2. The article talks about syncable passkeys, however it fails to bring into discussion about the concept of Backup eligible and Backup state which are core to this topic.
3. The core selling point for passkey is its phishing resistant capability which is not even discussed once in the article
4. The authenticator implementation gives a lot of flexibility to the party implementing it and it also creates a room for abuse. There is a trade off between usability (synching credential between devices) and security.
5. Its just a glorified managed password which is PHISHING RESISTANT so still a lot better choice than using passwords alone.
Comments
Good for awareness but its not Novel at all. Its an incomplete, sensational and one sided PR by a given company
1. There is nothing novel about this, its a known behavior and has been in public domain for a while
2. The article talks about syncable passkeys, however it fails to bring into discussion about the concept of Backup eligible and Backup state which are core to this topic.
3. The core selling point for passkey is its phishing resistant capability which is not even discussed once in the article
4. The authenticator implementation gives a lot of flexibility to the party implementing it and it also creates a room for abuse. There is a trade off between usability (synching credential between devices) and security.
5. Its just a glorified managed password which is PHISHING RESISTANT so still a lot better choice than using passwords alone.