Archive

tag: SCA

identity

The threat of real-time phishing that cannot be prevented by one-time passwords - The true nature of phishing resistance using passkeys

In recent years, phishing attacks targeting financial institutions and other organizations have become increasingly sophisticated, with a technique known as "real-time phishing" posing a particularly serious threat. This type of attack is known to even disable one-time passwords (OTPs), which were previously considered effective countermeasures against phishing attacks, forcing financial institutions to fundamentally redesign their identity verification systems.