SUBSCRIBE
Tech Journal Now
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
  • More Articles
Reading: Enterprise passkey security under threat from malware
Share
Tech Journal NowTech Journal Now
Font ResizerAa
  • News
  • Reviews
  • Guides
  • AI
  • Best Buy
  • Games
  • Software
Search
  • Home
  • News
  • AI
  • Reviews
  • Guides
  • Best Buy
  • Software
  • Games
  • More Articles
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Tech Journal Now > AI > Enterprise passkey security under threat from malware
AI

Enterprise passkey security under threat from malware

News Room
Last updated: August 6, 2026 1:24 pm
News Room
Share
1 Min Read
SHARE

The Palo Alto report showed attacks that, it said, “demonstrate how malware on a compromised endpoint can misuse onboarding, recovery and device trust workflows to take over passkey-protected accounts,” as well as “how an attacker can authenticate without user interaction, bypass user verification requirements and extract all synced passkey private keys.”

Palo Alto described three categories of attack, collectively dubbed Pass-ta-key: Pass-ta-key, where an attacker takes over an account protected by a Google-synced passkey using malware running on the victim’s device, without requiring privilege escalation, device unlock or user interaction; Silver Pass-ta-key, which involves an attacker tricking Google Cloud Authenticator into believing the victim has unlocked the device with biometrics, leading to full account takeover without using the victim’s device during authentication; and Golden Pass-ta-key, which allows an attacker to extract all synced passkeys in a form that lets them be shared or sold on the credential black market.

Given the complexity of most global enterprise threat surfaces, some CISOs have struggled with adapting passwordless processes to environments with legacy and virtual environments. Passcodes have been recently embraced by enterprise CISOs as the first step in implementing a passwordless strategy.

Read the full article here

You Might Also Like

MacBook Neo’s success wasn’t luck, it was a plan

Apple will buy more US-made components from Broadcom – Computerworld

Too good to be true? Avoid free AI token offers — or risk vendor lock-in – Computerworld

Meta launches low-cost Muse Spark 1.1 as enterprise AI spending comes under scrutiny – Computerworld

Report: Passkey security issues could allow account takeover

Share This Article
Facebook Twitter Email Print
Leave a comment Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Trending Stories

Games

Ghost Recon marks 25 years with a major update and free new missions for Wildlands, and a Ghost Recon: Future Soldier giveaway

August 6, 2026
Games

New Kingdom Come trademark filings mention ‘online’ virtual worlds—but we shouldn’t assume Warhorse is making a multiplayer game just yet

August 6, 2026
News

This startup just raised $6M for an AI tutor that helps kids figure it out themselves – GeekWire

August 6, 2026
AI

Granola lawsuit raises concerns over AI note-taking app privacy

August 6, 2026
News

How EVP Charles Lamanna is helping turn Microsoft into the ‘Copilot company’ – GeekWire

August 6, 2026
Games

The first GTA 6 gameplay reveal will debut on Netflix later this month, as the streaming service tries yet again to get a piece of that videogame pie

August 6, 2026

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Follow US on Social Media

Facebook Youtube Steam Twitch Unity

2024 © Prices.com LLC. All Rights Reserved.

Tech Journal Now

Quick Links

  • Privacy Policy
  • Terms of use
  • For Advertisers
  • Contact
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?