Passkey attacks abuse Windows logs, Google Password Manager, and Windows Hello to bypass phishing-resistant MFA without breaking FIDO2.
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on.
Passkeys are designed to replace reusable passwords and resist phishing. The attacks instead reused signed authe... [8389 chars]

