0% found this document useful (0 votes)
3 views2 pages

IBM Program

Passkeys are a passwordless login method utilizing public-key cryptography, enhancing security by preventing phishing and credential stuffing attacks. This system allows for faster logins and seamless multi-device use by creating a key pair during signup, with the private key stored securely on the user's device. Major tech ecosystems like Google, Microsoft, and Apple are adopting passkeys, encouraging users to enable them for improved account security.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
3 views2 pages

IBM Program

Passkeys are a passwordless login method utilizing public-key cryptography, enhancing security by preventing phishing and credential stuffing attacks. This system allows for faster logins and seamless multi-device use by creating a key pair during signup, with the private key stored securely on the user's device. Major tech ecosystems like Google, Microsoft, and Apple are adopting passkeys, encouraging users to enable them for improved account security.
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Title: Passkeys: The Passwordless Future

What it is:

A phishing-resistant login method based on public-key cryptography, replacing


passwords with device-bound credentials (Face ID, fingerprint, or PIN).

Why it matters:

Stops most phishing and credential stuffing attacks.


Faster logins, no password resets, works across devices and platforms.

How it works:

During signup, your device creates a key pair.


Website stores the public key; the private key stays on your device/secure
hardware.
On login, the site sends a challenge; your device signs it after you verify
(biometric/PIN).
Sync via secure cloud for multi-device use.

Where it’s used:

Google, Microsoft, Apple ecosystems; major websites now offer passkeys.

Poster outline:

Problem: Passwords are weak and reused.


Solution: Passkeys with hardware-backed keys.
Data point: Over 80% of breaches involve weak or stolen passwords (industry
stat).
Visual: User device with biometric → challenge/response → website with public
key.
Call to action: “Turn on passkeys in your accounts today.”

Bonus demo idea:

Show creating a passkey for a site and logging in with Face ID/fingerprint.
Compare time-to-login vs password + OTP.

Alternative cybersecurity topics if you want more:

Zero Trust Network Access (ZTNA)


Software Supply Chain Security (SBOM + signing)

[Link] 02/09/25, 12 27 PM
Page 1 of 2
:
Confidential Computing (TEEs for data-in-use)
MFA Fatigue Attacks and Number Matching

[Link] 02/09/25, 12 27 PM
Page 2 of 2
:

You might also like