Increasing Trust in Passwordless
Facebook Twitter LinkedIn

Increasing Trust in Passwordless

Combined Session
Wednesday, May 10, 2023 12:00—13:00
Location: B 09

Street Cred: Increasing Trust in Passwordless Authentication

Good security gets out of the way of users while getting in the way of adversaries. Passwords fail on both accounts. Users feel the pain of adhering to complex password policies. Adversaries simply copy, break, or brute-force their way in. Why, then, have we spent decades with passwords as the primary factor for authentication? 

The industry needs to trust passwordless authentication (FIDO2). Adversaries and then criminals have circumvented our authentication controls for decades. From the very first theft of cleartext passwords to the very latest bypass of a second-factor, time and again improvements in defenses are met with improved attacks.

What holds us back from getting rid of passwords? Trust. In this session, we will propose a framework of technical controls to ensure only trusted sessions authenticate, regardless of faults or failures in any one factor, and to reassess based on shared signals (CAEP). We will share a path forward for increasing trust in passwordless authentication.

Street Cred: Increasing Trust in Passwordless Authentication
Event Recording
Street Cred: Increasing Trust in Passwordless Authentication
Click here to watch the recording of this session. Please note that this video is only available to event participants and subscribers. You'll need to log in to watch it.
Street Cred: Increasing Trust in Passwordless Authentication
Presentation deck
Street Cred: Increasing Trust in Passwordless Authentication
Click here to download the slide deck. Please note that downloads are only available for event participants and subscribers. You'll need to log in to download it.
Wolfgang Goerlich
Wolfgang Goerlich
Cisco
J. Wolfgang Goerlich is an Advisory CISO for Cisco Secure. Prior to this role, he led IT and IT security in the healthcare and financial services verticals. Wolfgang has held VP positions at...

Challenges in Transitioning to the Next Generation Password-less Experience

Cash.App is the #1 financial app in the US. It started out with a password-less authentication paradigm back in 2013, built around OTP verifications. We are now transitioning to the next generation password-less experience built around passkey. While the transition offers many promises, the path comes with several challenges, around security guarantees, backward compatibility and seamless user experience. We share insights we learned along the journey.

Challenges in Transitioning to the Next Generation Password-less Experience
Event Recording
Challenges in Transitioning to the Next Generation Password-less Experience
Click here to watch the recording of this session. Please note that this video is only available to event participants and subscribers. You'll need to log in to watch it.
Challenges in Transitioning to the Next Generation Password-less Experience
Presentation deck
Challenges in Transitioning to the Next Generation Password-less Experience
Click here to download the slide deck. Please note that downloads are only available for event participants and subscribers. You'll need to log in to download it.
Dr. Huan Liu
Dr. Huan Liu
Cash App (Block Inc)
Huan Liu is the Head of Access Management for Cash App, the #1 financial app in the US. His team is responsible for AuthN and AuthZ and many foundation services such as Session and Passcode. Prior...

Moving on from legacy MFA: Phishing-resistant MFA as a prerequisite for Passwordless

As long as passwords exist, enterprises are vulnerable to account takeover attacks –yet organizations looking to eliminate passwords may not know where to begin their passwordless journey. While passwordless authentication methods—especially those based on FIDO2—are widely available, they are not yet universally supported nor adopted. This lack of a universal approach can cause confusion and complacency—or both. Attend this session to learn why (and how) organizations should move away from passwords and legacy MFA to advance to and adopt a secure passwordless strategy centered on phishing-resistant MFA in 2023

Moving on from legacy MFA: Phishing-resistant MFA as a prerequisite for Passwordless
Event Recording
Moving on from legacy MFA: Phishing-resistant MFA as a prerequisite for Passwordless
Click here to watch the recording of this session. Please note that this video is only available to event participants and subscribers. You'll need to log in to watch it.
Moving on from legacy MFA: Phishing-resistant MFA as a prerequisite for Passwordless
Presentation deck
Moving on from legacy MFA: Phishing-resistant MFA as a prerequisite for Passwordless
Click here to download the slide deck. Please note that downloads are only available for event participants and subscribers. You'll need to log in to download it.
Rolf Steinbrück
Rolf Steinbrück
Yubico
Rolf Steinbrück is a Senior Solutions Engineer in DACH and CEE at Yubico. Before joining the company, Rolf worked at Sophos for over 17 years. There, he was responsible as Professional...

Market Overview: Passwordless Authentication

This session will provide an overview of the market for Passwordless Authentication products and services and will present a compass to help you to find the Passwordless Authentication product or service that best meets your customers, partners, or workforce needs. KuppingerCole´s Alejandro Leal recently published a Leadership Compass for Passwordless Authentication and examined the market segment, vendor product and service functionality, relative market share, and innovative approaches to providing Passwordless Authentication solutions.

Market Overview: Passwordless Authentication
Event Recording
Market Overview: Passwordless Authentication
Click here to watch the recording of this session. Please note that this video is only available to event participants and subscribers. You'll need to log in to watch it.
Market Overview: Passwordless Authentication
Presentation deck
Market Overview: Passwordless Authentication
Click here to download the slide deck. Please note that downloads are only available for event participants and subscribers. You'll need to log in to download it.
Alejandro Leal
Alejandro Leal
KuppingerCole
Alejandro joined KuppingerCole as a Research Analyst in December 2021. His main areas of expertise include digital transformation in the public and private sector, managing business in...

Tickets

On-Demand Access
Re-live EIC 2023
€500
 
Watch 200 sessions on-demand
Download all available presentations
Subscribe for updates
Please provide your email address