AWS adds passkey support to boost MFA protection

New authentications methods for AWS are here

When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works.

FIDO2 passkeys have arrived forAmazonWeb Services (AWS) to boostmulti-factor authentication(MFA) on the cloud platform.

The new method of authentication is soon to be applied as standard, with root AWS users having until the end of July 2024 to enable MFA.

The new MFA option will enhance account security, provide synchronicity across platforms, and protect against a number of threats including phishing attacks.

Industry trends towards passkeys

FIDO2 passkeys provide a secure alternative to passwords by providing an authentication system that utilizes the tried and tested public key cryptography. The only way to decrypt the passkey generated by the public key chain is to use the user’s personal device, which hides the private key, adding an additional layer of security.

While some of thebest password generatorscan provide highly secure passwords that are unique to each account, and thebest password managerscan help store them securely, a single password leak could put your accounts at risk.

BleepingComputersays that Amazon is adhering to the recommendations presented by CISA as part of the Secure by Design pledge, which means that MFA will soon become standard across AWS.

Passkeys will be available with a number of biometric authentication options such asApple’s Touch ID, and Windows Hello on laptops, among many more. The rollout will initially only affect a small number of users, before gradually expanding to include general user accounts and root users of member accounts, but all users are recommended to activate a method of MFA in the meantime.

Are you a pro? Subscribe to our newsletter

Are you a pro? Subscribe to our newsletter

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

More from TechRadar Pro

Benedict has been writing about security issues for over 7 years, first focusing on geopolitics and international relations while at the University of Buckingham. During this time he studied BA Politics with Journalism, for which he received a second-class honours (upper division),  then continuing his studies at a postgraduate level, achieving a distinction in MA Security, Intelligence and Diplomacy. Upon joining TechRadar Pro as a Staff Writer, Benedict transitioned his focus towards cybersecurity, exploring state-sponsored threat actors, malware, social engineering, and national security. Benedict is also an expert on B2B security products, including firewalls, antivirus, endpoint security, and password management.

A new form of macOS malware is being used by devious North Korean hackers

Ulefone Armor 27T Pro rugged phone review

Australian Beach Volleyball Tour live stream: How to watch bronze and gold medal matches online for free, finals, start time