Reply to post: Infrastructure

Password killer FIDO2 comes bounding into Azure Active Directory hybrid environments



Any commentary out there that is reasonably intelligent yet paranoid (short of the full-blown tin-foil hat variety) on this?

I've had a look at the sponsors of this project, and my spidy sense is tingling. The technology claims: "The FIDO protocols are designed from the ground up to protect user privacy. The protocols do not provide information that can be used by different online services to collaborate and track a user across the services. Biometric information, if used, never leaves the user’s device."

Given the industry motivation for super cookies and other technologies designed to circumvent our efforts to not be tracked, I should wonder what kind of profiling might be in the future that would make their claim a blatant and utter lie.

