Title: Passkeys: The Passwordless Future
What it is:
A phishing-resistant login method based on public-key cryptography, replacing
passwords with device-bound credentials (Face ID, fingerprint, or PIN).
Why it matters:
Stops most phishing and credential stuffing attacks.
Faster logins, no password resets, works across devices and platforms.
How it works:
During signup, your device creates a key pair.
Website stores the public key; the private key stays on your device/secure
hardware.
On login, the site sends a challenge; your device signs it after you verify
(biometric/PIN).
Sync via secure cloud for multi-device use.
Where it’s used:
Google, Microsoft, Apple ecosystems; major websites now offer passkeys.
Poster outline:
Problem: Passwords are weak and reused.
Solution: Passkeys with hardware-backed keys.
Data point: Over 80% of breaches involve weak or stolen passwords (industry
stat).
Visual: User device with biometric → challenge/response → website with public
key.
Call to action: “Turn on passkeys in your accounts today.”
Bonus demo idea:
Show creating a passkey for a site and logging in with Face ID/fingerprint.
Compare time-to-login vs password + OTP.
Alternative cybersecurity topics if you want more:
Zero Trust Network Access (ZTNA)
Software Supply Chain Security (SBOM + signing)
[Link] 02/09/25, 12 27 PM
Page 1 of 2
:
Confidential Computing (TEEs for data-in-use)
MFA Fatigue Attacks and Number Matching
[Link] 02/09/25, 12 27 PM
Page 2 of 2
: