Authenticate Without Passwords

In three previous editions of this book, I criticized the breathless proclamations we’ve heard for years that promised a passwordless future—apps, devices, services, or other technology that would somehow “kill” the password and put us out of our collective misery by giving us an easier yet more secure way to log in. We’ve heard this story for decades, but reality has never come close to matching up.

Until recently, most “passwordless” authentication methods were merely convenience features layered on top of passwords. Behind the scenes, you still had to have a password for nearly every site and service, even if you never saw or typed it. (Magic links, described earlier in What About Magic Links?, fall into this ...

Get Take Control of Your Passwords, 4th Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.