How passkeys contribute to phishing
What passkeys have basically done (in this respect) is contribute to a
vast increase in direct phishing attempts ("thanks for your
purchase!") -- mostly going out from Gmail (Google cares about inbound
email, far less about email leaving Google to other platforms) that
urges recipients to call a phone number, where they are either
directly urged to provide financial information so that the "charges
can be cancelled"), or talked through installing remote access
software that gives the phisher direct control over their device (and
the passkeys!). -L
- - -
--Lauren--
Lauren Weinstein
lau...@vortex.com (https://www.vortex.com/lauren)
Lauren's Blog: https://lauren.vortex.com
Mastodon: https://mastodon.laurenweinstein.org/@lauren
Signal: By request on need to know basis
Founder: Network Neutrality Squad: https://www.nnsquad.org
PRIVACY Forum: https://www.vortex.com/privacy-info
Co-Founder: People For Internet Responsibility
_______________________________________________
pfir mailing list
https://lists.pfir.org/mailman/listinfo/pfir