Ob-factor authentication (2FA) tau dhau los ua qhov kev hloov pauv tshiab rau cov txheej txheem kev lees paub ib txwm muaj raws li cov passwords feem ntau. Txawm hais tias qhov thib ob qhov tseem ceeb no tuaj yeem ua tau ntau yam, FIDO alliance tau tsim tus qauv U2F (Universal Second Factor) raws tu qauv coj ib qho kev mob siab rau ua qhov tseem ceeb.

Kab lus no tham txog kev ruaj ntseg ntawm cov tokens hais txog lawv ib puag ncig ntawm kev siv, cov kev txwv ntawm cov kev qhia tshwj xeeb nrog rau lub xeev ntawm kev kos duab ntawm kev daws teeb meem los ntawm kev qhib qhov chaw thiab kev lag luam. Ib qho PoC siv kev txhim kho kev ruaj ntseg, muaj txiaj ntsig zoo hauv cov ntsiab lus tseem ceeb, yog cov ncauj lus kom ntxaws. Nws yog raws li qhov qhib thiab qhib hardware WooKey platform muab kev tiv thaiv nyob rau hauv qhov tob tiv thaiv ntau yam attacker qauv.

Xav paub ntau ntxiv txog SSTIC lub website.