Congrats to editors @balfanz, @aczeskis, @equalsJeffH, J.C. Jones, Michael B. Jones, Akshay Kumar, @AngeloSunmile, Rolf Lindemann, and Emil Lundberg for the newly published @w3c #WebStandard Web Authentication #WebAuthn: w3.org/TR/webauthn/ #timetoadopt
This tweet is unavailable
1
1
1
The Web Authentication #API (also known as #WebAuthn) allows servers to register and authenticate users using public key #cryptography instead of a #password
Replying to @w3cdevs
#WebAuthn enables strong authentication using securely-held public keys with user content, rather than #passwords - given how fragile passwords are, this is a pretty big deal.
1
1
2
As passwords can be insecure or hard to remember, #developers have also to worry about all the complications of passing passwords through systems and safely storing them in databases (about 81% of all hacking-related breaches leverage stolen or weak #passwords)
1
The #WebAuthn API helps to eliminate passwords entirely. #Webauthn can be used both in single factor and multi-factor authentication schema. See different usage demos at webauthn.io/
1
4
The #WebAuthn #API is a core component of @FIDOAlliance's #FIDO2 set of specs, along the #CTAP protocol: fidoalliance.org/fido2/ With #FIDO2 and #WebAuthn, all users around the world are now allowed to "log on" safely, and industries now count on better #security #privacy
1
While #WebAuthn is an important tool, it is always important to remember that #security should be incorporated into every step of how software is designed and developed
1
#WebAuthn is supported in the #Chrome, #firefox, and #edge #browsers, and is in technical preview in #Safari: nitter.vloup.ch/webkit/status/10…. See also caniuse.com/#feat=webauthn
Release notes are now available for Safari Technology Preview release 71 including Dark Mode enhancements, Web Animations, Intersection Observer, new experimental features for Web Authentication, and an experimental Audits tab in Web Inspector. webkit.org/blog/8517/release…

Mar 4, 2019 · 1:36 PM UTC

3
3