Happy to share our latest research on #FIDO2 password-less authentication using biometric #WebAuthn, with Leona Lassak, Annika Hildebrandt, and Blase Ur.
Users hate passwords; #WebAuthn could render them obsolete. But hardware security keys (YubiKeys) are inconvenient. Fortunately, end users can also use their phones as #FIDO2 authenticators. The user authorizes each sign in using their usual unlock mechanism (biometric, PIN).
Using your fingerprint to sign into a website is new to most end users. Our research focused on users' initial encounters with biometric WebAuthn. Many will encounter WebAuthn for the first time via a small notification on a website encouraging them to adopt the technology.