Using Passkeys to Prevent Fraud
Blog post from Descope
Passkeys, built on FIDO2 and WebAuthn standards, offer a robust solution for preventing fraud by eliminating the vulnerabilities associated with traditional passwords and one-time passwords (OTPs), which are susceptible to phishing, breaches, and interception. By using public-key cryptography, passkeys ensure that private keys remain on the user's device, making them phishing-resistant and device-bound. This approach significantly enhances fraud prevention, particularly in scenarios like account takeover (ATO) fraud, by ensuring that sensitive actions such as financial transactions or freight rerouting are only authorized if a user completes passkey authentication on their registered device. The concept of step-up authentication further strengthens security by requiring additional verification for high-risk actions, ensuring that only the legitimate user on the correct device can authorize such actions. This method not only improves the user experience by reducing the need for app-based TOTPs or phone calls but also provides a powerful fraud control mechanism applicable across various industries.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Real-time | 2 | 6,296 | 1,346 | 246 | -2% |
| Secrets Management | 2 | 1,821 | 338 | 111 | +22% |
| LLM | 1 | 5,932 | 1,046 | 223 | -2% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.