National Cyber Warfare Foundation (NCWF)

How Attackers Bypass Synced Passkeys


0 user ratings
2025-10-15 12:02:11
milo
Attacks
TLDR
Even if you take nothing else away from this piece, if your organization is evaluating passkey deployments, it is insecure to deploy synced passkeys.

Synced passkeys inherit the risk of the cloud accounts and recovery processes that protect them, which creates material enterprise exposure.
Adversary-in-the-middle (AiTM) kits can force authentication fallbacks that circumvent strong



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/10/how-attackers-bypass-synced-passkeys.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Attacks



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.