Главная
Study mode:
on
1
Intro
2
U2F, FIDO2 and Webauthn
3
FIDO - Password Killer?
4
The Web Doesn't Password Good
5
A Unique Security Problem
6
Goals
7
Designing a Better Authentication System
8
Authentication Outside of the Webpage
9
Summary
10
Phishing and Precomputation Attacks
11
Preventing Relay Attacks
12
Challenge Message Contents
13
Configuring and Attacking the Authenticator
14
Choice of Algorithms
15
Other Password Operations
16
Change Password
17
The Bad
18
The Ugly
19
The Way Forward
Description:
Explore the future of web authentication in this 49-minute conference talk from ShowMeCon 2019. Delve into the challenges of traditional password systems and discover innovative solutions like U2F, FIDO2, and WebAuthn. Learn about the unique security problems facing the web and the goals for designing better authentication systems. Examine the potential of FIDO as a password killer and understand authentication mechanisms beyond webpages. Gain insights into preventing phishing, precomputation, and relay attacks, while exploring challenge message contents and authenticator configurations. Analyze the choice of algorithms, password operations, and the process of changing passwords. Critically assess the advantages, disadvantages, and potential pitfalls of new authentication methods, concluding with a discussion on the way forward for modern web security.

Redesigning Password Authentication for the Modern Web

Add to list