Erik van Straten<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@thomasbosboom" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>thomasbosboom</span></a></span> : onder Android is het risico niet denkbeeldig dat je al jouw passkeys kwijtraakt of dat ze niet syncroniseren naar een ander toestel.</p><p>Onder iOS en iPadOS zijn er omstandigheden waarbij iemand, die een ontgrendelde iPhond of iPad in handen heeft (zoals een dief die zo'n apparaat uit jouw handen grist op het moment dat je het gebruikt), met 0FA van jouw iCloud wachtwoorden en passkeys gebruik kan maken.</p><p><a href="https://infosec.exchange/@ErikvanStraten/113820358011090612" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113820358011090612</span></a></p><p>Allemaal "wontfix" door Apple/Google en het Chromium team.</p><p><span class="h-card" translate="no"><a href="https://nrw.social/@roman78" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>roman78</span></a></span> </p><p><a href="https://infosec.exchange/tags/Passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passkeys</span></a> <a href="https://infosec.exchange/tags/Vulns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulns</span></a> <a href="https://infosec.exchange/tags/Bugs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bugs</span></a> <a href="https://infosec.exchange/tags/AccountLockOut" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AccountLockOut</span></a> <a href="https://infosec.exchange/tags/0FA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>0FA</span></a> <a href="https://infosec.exchange/tags/ZFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZFA</span></a> <a href="https://infosec.exchange/tags/Vulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulnerabilities</span></a> <a href="https://infosec.exchange/tags/iCloudKeyChain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iCloudKeyChain</span></a> <a href="https://infosec.exchange/tags/Wachtwoorden" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wachtwoorden</span></a> <a href="https://infosec.exchange/tags/Biometrie" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Biometrie</span></a> <a href="https://infosec.exchange/tags/SyncErrors" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SyncErrors</span></a> <a href="https://infosec.exchange/tags/Welkom01" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Welkom01</span></a></p>