Skip to content

Commit

Permalink
Update Multifactor_Authentication_Cheat_Sheet.md (#1248)
Browse files Browse the repository at this point in the history
* Update Multifactor_Authentication_Cheat_Sheet.md

Updated biometric information, as it has become commonly available through webauthn.  I think it would make sense to add a cheatsheet on webauthn, but I didn't want to be presumptive.

* Update Multifactor_Authentication_Cheat_Sheet.md

Removed webauthn reference.  Probably should have a webauthn page that could cover biometrics and webauthn and their relationship.
  • Loading branch information
Brianthered authored Dec 6, 2023
1 parent 18a4b09 commit a082c93
Showing 1 changed file with 1 addition and 2 deletions.
3 changes: 1 addition & 2 deletions cheatsheets/Multifactor_Authentication_Cheat_Sheet.md
Original file line number Diff line number Diff line change
Expand Up @@ -282,7 +282,7 @@ Email verification requires that the user enters a code or clicks a link sent to

## Something You Are

The final factor in the traditional view of MFA is something you are - which is one of the physical attributes of the users (often called biometrics). Biometrics are rarely used in web applications due to the requirement for users to have specific hardware.
The final factor in the traditional view of MFA is something you are - which is one of the physical attributes of the users (often called biometrics). Biometrics has been rarely used in web pages due to the requirement for users to have specific hardware. Most modern apps which require secure authentication have an option to use biometrics, particularly if the interfaces is already designed for a smart phone or tablet.

### Biometrics

Expand All @@ -301,7 +301,6 @@ The are a number of common types of biometrics that are used, including:

- Require manual enrolment of the user's physical attributes.
- Custom (sometimes expensive) hardware is often required to read biometrics.
- Modern browsers do not have native support, so custom client-side software is required.
- Privacy concerns: Sensitive physical information must be stored about users.
- If compromised, biometric data can be difficult to change.

Expand Down

0 comments on commit a082c93

Please sign in to comment.