Smartphone on Android can be used as a security key for two-factor authentication

Google developers have introduced a new method of two-factor authentication, which involves using a smartphone based on Android as a physical security key.

Smartphone on Android can be used as a security key for two-factor authentication

Many have already encountered two-factor authentication, which involves not only the introduction of a standard password, but also the use of some second tool for passing identity verification. For example, after entering a user password, some services send an SMS message containing a generated code that allows you to pass authorization. There is also an alternative method of implementing two-factor authentication, when a physical hardware key like YubiKey is used, for activation of which it is necessary to connect it to a PC.  

Google developers suggest using a custom hardware key as such a key. Android- smartphone. Instead of sending a notification to the device, the website will attempt to access the smartphone via Bluetooth. Notably, this method does not require physically connecting the smartphone to the computer, as Bluetooth has a fairly long range. Furthermore, the likelihood of an attacker gaining access to the smartphone while within Bluetooth range is extremely low.  

Currently, the new authentication method is only supported by some Google services, including Gmail and G-Suite. For proper operation, a smartphone running Android 7.0 Nougat or later.




Source: 3dnews.ru
Buy reliable hosting for sites with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster