SUBSCRIBE
Tech Journal Now
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
  • More Articles
Reading: Enterprise passkey security under threat from malware
Share
Tech Journal NowTech Journal Now
Font ResizerAa
  • News
  • Reviews
  • Guides
  • AI
  • Best Buy
  • Games
  • Software
Search
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
  • More Articles
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Tech Journal Now > AI > Enterprise passkey security under threat from malware
AI

Enterprise passkey security under threat from malware

News Room
Last updated: August 6, 2026 1:24 pm
News Room
Share
1 Min Read
SHARE

The Palo Alto report showed attacks that, it said, “demonstrate how malware on a compromised endpoint can misuse onboarding, recovery and device trust workflows to take over passkey-protected accounts,” as well as “how an attacker can authenticate without user interaction, bypass user verification requirements and extract all synced passkey private keys.”

Palo Alto described three categories of attack, collectively dubbed Pass-ta-key: Pass-ta-key, where an attacker takes over an account protected by a Google-synced passkey using malware running on the victim’s device, without requiring privilege escalation, device unlock or user interaction; Silver Pass-ta-key, which involves an attacker tricking Google Cloud Authenticator into believing the victim has unlocked the device with biometrics, leading to full account takeover without using the victim’s device during authentication; and Golden Pass-ta-key, which allows an attacker to extract all synced passkeys in a form that lets them be shared or sold on the credential black market.

Given the complexity of most global enterprise threat surfaces, some CISOs have struggled with adapting passwordless processes to environments with legacy and virtual environments. Passcodes have been recently embraced by enterprise CISOs as the first step in implementing a passwordless strategy.

Read the full article here

You Might Also Like

Microsoft confirms an AI worm is propagating through Copilot and other MS apps

Bidding war for defunct Spirit Airlines’ employee data will not die

The iPhone is now Apple’s ‘intelligent personal hub’

When AI explains its decision, humans may stop thinking independently

Apple cracks China with Alibaba for iPhone AI

Share This Article
Facebook Twitter Email Print
Leave a comment Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Trending Stories

Games

Diablo 5 director promises Diablo 2-style combat where ‘the right build’ matters more than Diablo 4’s action-heavy approach

September 29, 2026
Games

The weird experience of liking a game before it’s ‘fixed’

September 29, 2026
Games

The algorithm comes for Steam’s Discounts and Events

September 29, 2026
Games

Live from Nivalis Nights: A nightly photo journal of my cyberpunk noodle bar

September 29, 2026
News

A rocket maker’s reality check for the Seattle region – GeekWire

September 29, 2026
Games

How every major character in Dostoevsky’s Crime and Punishment would fare if they had to survive the plot of Halo 1

September 29, 2026

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Follow US on Social Media

Facebook Youtube Steam Twitch Unity

2024 © Prices.com LLC. All Rights Reserved.

Tech Journal Now

Quick Links

  • Privacy Policy
  • Terms of use
  • DMCA
  • For Advertisers
  • Contact
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?