Brutkey

Bolt
@boltx@mastodon.social

@markwyner@mas.to By physical passkeys, do you mean something like a Yubikey using U2F/FIDO2 that have been around for years, or the new "passkey" standard where sites just save a little digital credential in your browser/OS/phone's password manager, except stored on a standard USB stick?

Either way, it's often the case that sites using these give you backups, such as saving multiple passkeys, adding multiple hardware security keys, or also adding other 2FA like an authenticator app or backup codes.

tim
@timcappalli@infosec.exchange

@boltx@mastodon.social @markwyner@mas.to there is no "new passkey standard". You can choose to save a passkey in a credential manager (synced passkey) or on a security key (device-bound passkey).