Microsoft Accounts now passwordless by default - pushing passkeys



 Microsoft Security Blog:

Happy World Passkey Day!

As the world shifts from passwords to passkeys, we’re excited to join the FIDO Alliance in leaving “World Password Day” behind to celebrate the very first “World Passkey Day.” To commemorate this renaming, Microsoft and dozens of other organizations have taken the Passkey Pledge to work toward increasing the implementation and adoption of passkeys over the coming year. For Microsoft, taking the pledge continues our commitment to a future where every sign in is simple and secure.

Picture1.webp


For detailed information on why passkeys are better than passwords, visit our website: What is a Passkey? Secure Signins | Microsoft Security

The journey toward passwordless sign-in​

Ten years ago, Microsoft had a bold idea. Instead of signing in using clumsy and insecure passwords, what if you could simply smile?

With this vision in mind, Microsoft introduced Windows Hello, a new way for users to securely sign in to their accounts with their face, fingerprint, or PIN. Windows Hello helped lay the foundation for an entirely new era of authentication.1 Today, more than 99% of people who sign into their Windows devices with their Microsoft account do so using Windows Hello.

However, as the world and our digital lives evolved, it became clear that just signing into your device without a password isn’t enough. To keep your digital life safe, you need a way to sign into any account without a password. As part of an industry-wide effort, Microsoft has collaborated closely with the FIDO Alliance, and with platform partners to develop passkeys: a standards-based phishing-resistant authentication method that replaces passwords. Now you can sign in to any supported app or website with a passkey using your face, fingerprint, or PIN. Hundreds of websites, representing billions of accounts, now support signing in with a passkey. The world is changing!

For a list of websites that support passkeys, visit Passkey Directory – FIDO Alliance.

Over the past decade, we’ve observed two important, coinciding trends: people have grown increasingly accustomed to signing into their devices without passwords, and the number of password-based cyberattacks has increased dramatically. Bad actors know that the password age is ending, and that the number of easily compromised accounts is shrinking. In response, these bad actors are devoting considerable resources to automating brute force and phishing attacks against any account still protected by a password. Last year, we observed a staggering 7,000 password attacks per second (more than double the rate from 2023).2 As passkeys become the new standard, expect increased pressure from cyberattackers on any accounts still protected by passwords or other phishable sign-in methods.

Our users love signing into their Microsoft accounts with passkeys​

Last year, we introduced passkey support for Microsoft accounts for our consumer apps and services like Xbox and Copilot, and now we see nearly a million passkeys registered every day. Because they’re not entering complex characters or one-time codes, users signing in with passkeys are three times more successful at getting into their account than password users (about 98% versus 32%). When you use a passkey, you get into your account much quicker too! Passkey sign-ins are eight times faster than a password and multifactor authentication.

Picture2-1024x583.webp


We believe that great usability and great security go hand in hand, so as we continue our transition to a passwordless world, we’re introducing some significant changes:
  1. New sign-in user experience (UX): Earlier this year, we launched a new visual style that simplifies the sign-in and sign-up experience. The new design is modernized and streamlined and prioritizes passwordless methods for sign-in and sign-up.3
  2. New accounts are passwordless by default: As part of this simplified UX, we’re changing the default behavior for new accounts. Brand new Microsoft accounts will now be “passwordless by default.” New users will have several passwordless options for signing into their account and they’ll never need to enroll a password. Existing users can visit their account settings to delete their password.
  3. Passwordless-preferred sign-in: We’re also making it simpler to sign in with safer options. Instead of showing you all the possible ways for you to sign in, we automatically detect the best available method on your account and set that as the default. For example, if you have a password and “one time code” set up on your account, we’ll prompt you to sign in with your one time code instead of your password. After you’re signed in, you’ll be prompted to enroll a passkey. Then the next time you sign in, you’ll be prompted to sign in with your passkey. This simplified experience gets you signed in faster and in our experiments has reduced password use by over 20%. As more people enroll passkeys, the number of password authentications will continue to decline until we can eventually remove password support altogether.
Although passwords have been around for centuries, we hope their reign over our online world is ending. Billions of times a day, people all over the world sign into their accounts. According to the FIDO Alliance, more than 15 billion user accounts can now sign in using passkeys instead of passwords. But we need billions more to make every sign-in passwordless. So, to observe World Passkey Day, take the leap. Start by securing at least one of your accounts—ideally as many as you can—with a passkey. Protect your digital life from unauthorized access and make signing in faster, easier, and most importantly, more secure.

To create a passkey for signing into your Microsoft account, visit here. If you’re using Windows, you can also learn how to save and manage passkeys here: Save a passkey in Windows – Microsoft Support

Learn more with Microsoft Security​

To learn more about Microsoft Security solutions, visit our website. Bookmark the Security blog to keep up with our expert coverage on security matters. Also, follow us on LinkedIn (Microsoft Security) and X (@MSFTSecurity) for the latest news and updates on cybersecurity.


 Source:

 
Sorry, I don't need even more of my personal info, let alone biometrics, stored on another device or worse yet, on-line. I'll stick with my "OMG, it's so difficult to type accurately" (/Sarcasm) password.
I feel like this too. My passwords are personalized phrases (usually fairly long) comprised of a mixture of words from 3 different languages that I regularly use in my life, plus a kind of shorthand of my own, and some allowed symbols. And they're customized to each site/device/service, not all the same. So they're not easy for anyone outside my own head (lol) to guess or predict what the next characters in them will be. So far, at least, I've never been hacked in all these years. Though things are getting more and more sophisticated, so I suppose it's bound to happen at some point. Still feeling like there'd be a greater risk for me with all this new-fangled stuff, though, than with sticking with my tried and true password methods and general carefulness.

(Don't own a smart phone either. Just a pay-as-you-go oldie that can only do calls and short SMSs. Don't have any other tech like webcam or biometric scanners either. Just plain ol' desktop.)
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
The greenhorn in me is wondering, aside from the privacy issues, how would this passkey stuff work for people who get facial or finger damage from accidents or sickness. What then? Should everyone also set up an extra method in case of that, and not rely only on facial or fingerprint?

Also wondering, with all the AI and deep fake stuff out there, how that might eventually come into hacking/malware attempts to get through passkey security... Like, could it be possible for malware to somehow intercept or 'spy on' the moments of using face/fingers, to harvest that data and then pretend to be you?
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
Passkeys are not stored in your Microsoft Account. Passkeys are stored either locally on your PC or in a Password Manager.
Looks like it's less work for me to save the keys to my Dashlane account.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    PowerSpec B746
    CPU
    Intel Core i7-10700K
    Motherboard
    ASRock Z490 Phantom Gaming 4/ax
    Memory
    16GB (8GB PC4-19200 DDR4 SDRAM x2)
    Graphics Card(s)
    NVIDIA GeForce GTX 1050 TI
    Sound Card
    Realtek Audio
    Monitor(s) Displays
    #1. LG ULTRAWIDE 34" #2. AOC Q32G2WG3 32"
    Screen Resolution
    #1. 3440 X 1440 #2. 1920 x 1080
    Hard Drives
    NVMe WDC WDS100T2B0C-00PXH0 1TB
    Samsung SSD 860 EVO 1TB
    PSU
    750 Watts (62.5A)
    Case
    PowerSpec/Lian Li ATX 205
    Keyboard
    Logitech K270
    Mouse
    Logitech M185
    Browser
    Microsoft Edge and Firefox
    Antivirus
    ESET Internet Security
  • Operating System
    Windows 11 Canary Channel
    Computer type
    PC/Desktop
    Manufacturer/Model
    PowerSpec G156
    CPU
    Intel Core i5-8400 CPU @ 2.80GHz
    Motherboard
    AsusTeK Prime B360M-S
    Memory
    16 MB DDR 4-2666
    Monitor(s) Displays
    23" Speptre HDMI 75Hz
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 970 EVO 500GB NVMe
    Mouse
    Logitek M185
    Keyboard
    Logitek K270
    Browser
    Firefox, Edge and Edge Canary
    Antivirus
    Windows Defender
Passkeys don't contain any personal info and biometrics never leave your device.

If the software / security works as designed. My financial info isn't supposed to leave my bank or credit card company either, but it has, repeatedly.
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel Ultra 7 155H
    Memory
    16gb
    Graphics Card(s)
    Intel Arc integrated
    Hard Drives
    SSD
I feel like this too. My passwords are personalized phrases (usually fairly long) comprised of a mixture of words from 3 different languages that I regularly use in my life, plus a kind of shorthand of my own, and some allowed symbols. And they're customized to each site/device/service, not all the same. So they're not easy for anyone outside my own head (lol) to guess or predict what the next characters in them will be. So far, at least, I've never been hacked in all these years. Though things are getting more and more sophisticated, so I suppose it's bound to happen at some point. Still feeling like there'd be a greater risk for me with all this new-fangled stuff, though, than with sticking with my tried and true password methods and general carefulness.

(Don't own a smart phone either. Just a pay-as-you-go oldie that can only do calls and short SMSs. Don't have any other tech like webcam or biometric scanners either. Just plain ol' desktop.)

Well, as data cautious as I am (because I worked in the data field and knew how dangerous large 'marketing' and other databases begin compiled on people were way back in the 80's... and here we are), I use a smart phone. I don't store financial info / passwords on it. I don't use Touch ID to access that same info.

I'll type my lengthy, PITA, get it wrong occasionally, password.

And yeah, I do have concerns about some of the info that I know is being collected on my smart phone. I limit it as I can on a practical basis. However, I do believe that the practical advantages of a smart phone outweigh the risk.
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    HP
    CPU
    Intel Ultra 7 155H
    Memory
    16gb
    Graphics Card(s)
    Intel Arc integrated
    Hard Drives
    SSD
I wanted to change my passkey for Amazon but I have no clue on how to do it or even if it's possible. I tried deleting it to see if I could get the option to change it and thought I was going to lose being able to log-in. I didn't even want to use a passkeys at first. Now I guess I'm going to have to read all of Brink's guides to see if I can choose my passkeys or not. I don't even know if my Amazon and Google keys are stored locally on my computer, my Google account or my Dashlane account.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    PowerSpec B746
    CPU
    Intel Core i7-10700K
    Motherboard
    ASRock Z490 Phantom Gaming 4/ax
    Memory
    16GB (8GB PC4-19200 DDR4 SDRAM x2)
    Graphics Card(s)
    NVIDIA GeForce GTX 1050 TI
    Sound Card
    Realtek Audio
    Monitor(s) Displays
    #1. LG ULTRAWIDE 34" #2. AOC Q32G2WG3 32"
    Screen Resolution
    #1. 3440 X 1440 #2. 1920 x 1080
    Hard Drives
    NVMe WDC WDS100T2B0C-00PXH0 1TB
    Samsung SSD 860 EVO 1TB
    PSU
    750 Watts (62.5A)
    Case
    PowerSpec/Lian Li ATX 205
    Keyboard
    Logitech K270
    Mouse
    Logitech M185
    Browser
    Microsoft Edge and Firefox
    Antivirus
    ESET Internet Security
  • Operating System
    Windows 11 Canary Channel
    Computer type
    PC/Desktop
    Manufacturer/Model
    PowerSpec G156
    CPU
    Intel Core i5-8400 CPU @ 2.80GHz
    Motherboard
    AsusTeK Prime B360M-S
    Memory
    16 MB DDR 4-2666
    Monitor(s) Displays
    23" Speptre HDMI 75Hz
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 970 EVO 500GB NVMe
    Mouse
    Logitek M185
    Keyboard
    Logitek K270
    Browser
    Firefox, Edge and Edge Canary
    Antivirus
    Windows Defender
... which could be leaked in a data breach or phished on a fake site.

Both of those are impossible with passkeys.
Yeah, I know I can't prevent those 2 risks entirely, of course. And all the hacking, malware, deep fake, etc. is a stress and a worry for me, as it is for everyone else too. Hard to keep one step ahead of all the bad actors out there. If there was another method that didn't involve biometrics/personal data, I'd find it easier to make a switch. But I really don't want to give any more of our data out anywhere, in any form, unless I absolutely have no choice in the matter for essential services. ...That day will probably come soon enough, though, I suppose.
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
Well, as data cautious as I am (because I worked in the data field and knew how dangerous large 'marketing' and other databases begin compiled on people were way back in the 80's... and here we are), I use a smart phone. I don't store financial info / passwords on it. I don't use Touch ID to access that same info.

I'll type my lengthy, PITA, get it wrong occasionally, password.

And yeah, I do have concerns about some of the info that I know is being collected on my smart phone. I limit it as I can on a practical basis. However, I do believe that the practical advantages of a smart phone outweigh the risk.
@Levitate11 Yeah, that's understandable. I'm sure it's the same for many others too. I don't personally have a need for one, a simple old-style mobile is enough for me, thankfully. But the data harvesting, security vulnerabilities and expense of smartphones are real issues. So if I *had* to have one, I'd definitely try to handle it carefully like you do.
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
Making a little progress already. I had previously tried to determine If an authenticator app was available for Windows directly. I turned up nothing and so I leaped to the conclusion that authenticator apps only ran on smart phones, but it turns out that I was wrong. I was just searching incorrectly I've now just discovered that password manager apps often also contain an authenticator app also known as TOTP.

So, I am pretty sure that this will allow me to eliminate the stupid smart phone. It may take me a little while to get this all figured out because I've got other things I need to attend to today but from what I've seen I'm already pretty optimistic.

@hsehestedt
i use this edge extension authenticator which i also believe is available for google chrome. this one can also be password protected.

best of luck, Steve ..
 

My Computers

System One System Two

  • OS
    Windows 11 24H2 Home
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP 24" AiO
    CPU
    Ryzen 7 5825u
    Motherboard
    HP
    Memory
    64GB DDR4 3200
    Graphics Card(s)
    Ryzen 7 5825u
    Sound Card
    RealTek
    Monitor(s) Displays
    24" HP AiO
    Hard Drives
    1TB WD Blue SN580 M2 SSD Partitioned.
    2x 1TB USB HDD External Backup/Storage.
    Internet Speed
    900MB full fibre
    Browser
    Firefox ESR & Thunderbird
    Antivirus
    ClamAV TK
    Other Info
    Mainly Open Source Software
  • Operating System
    Ubuntu 22.04.5 LTS
    Computer type
    Laptop
    Manufacturer/Model
    Dell 13" Latitude 2017
    CPU
    i5 7200u
    Motherboard
    Dell
    Memory
    16GB DDR4
    Graphics card(s)
    Intel
    Sound Card
    Intel
    Monitor(s) Displays
    13" Dell Laptop
    Hard Drives
    250GB Crucial 2.5" SSD
    Mouse
    Gerenic 3 button
    Internet Speed
    WiFi only
    Browser
    FireFox
    Antivirus
    ClamAV TK
    Other Info
    Mainly Open Source Software
there are authenticator extensions available for most browsers.
i use this one in Edge.

this authenticator can also be 'password' protected.
best of luck, Steve ..
 

My Computers

System One System Two

  • OS
    Windows 11 24H2 Home
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP 24" AiO
    CPU
    Ryzen 7 5825u
    Motherboard
    HP
    Memory
    64GB DDR4 3200
    Graphics Card(s)
    Ryzen 7 5825u
    Sound Card
    RealTek
    Monitor(s) Displays
    24" HP AiO
    Hard Drives
    1TB WD Blue SN580 M2 SSD Partitioned.
    2x 1TB USB HDD External Backup/Storage.
    Internet Speed
    900MB full fibre
    Browser
    Firefox ESR & Thunderbird
    Antivirus
    ClamAV TK
    Other Info
    Mainly Open Source Software
  • Operating System
    Ubuntu 22.04.5 LTS
    Computer type
    Laptop
    Manufacturer/Model
    Dell 13" Latitude 2017
    CPU
    i5 7200u
    Motherboard
    Dell
    Memory
    16GB DDR4
    Graphics card(s)
    Intel
    Sound Card
    Intel
    Monitor(s) Displays
    13" Dell Laptop
    Hard Drives
    250GB Crucial 2.5" SSD
    Mouse
    Gerenic 3 button
    Internet Speed
    WiFi only
    Browser
    FireFox
    Antivirus
    ClamAV TK
    Other Info
    Mainly Open Source Software
I have reinstalled Windows on my PCs and still get asked to set up a password and pin, so guess I'm not going passwordless yet.
 

My Computer

System One

  • OS
    Windows 11 Pro 23H2 (OS Build: 22631.5189)
    Computer type
    Laptop
    Manufacturer/Model
    Zieenc Model: ACL1 (Was given to me by a friend)
    CPU
    Intel(R) Celeron(R) N4120 CPU @ 1.10GHz 1.10 GHz
    Motherboard
    Eii G142F (SOCKET 0)
    Memory
    8.00 GB (7.83 GB usable)
    Graphics Card(s)
    Intel UHD Graphics 600
    Sound Card
    Intel Display Audio /
    Monitor(s) Displays
    Intel Smart Sound Technology (Intel SST)
    Screen Resolution
    1600px by 900px
    Hard Drives
    Not sure in device manager is shows up as N10C, but I do know it is a SSD
    Keyboard
    HID Keyboard Device - Standard PS\2 Keyboard
    Mouse
    HID-Compliant Mouse
    Internet Speed
    78.56 Mbps Down and 11.19 Mbps Up
    Browser
    Google Chrome
    Antivirus
    Windows Security
If there was another method that didn't involve biometrics/personal data, I'd find it easier to make a switch.

Passkeys don't involve any personal data and don't necessarily involve biometrics (more convenient, but PIN works too).
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
Passkeys don't involve any personal data and don't necessarily involve biometrics (more convenient, but PIN works too).
Okay. That's good to know, thanks. I'll have to read more about it later on, then, after getting hubby's new OS set up. ...I'm curious about how PINs would be more secure than my passwords already are. Maybe the links already provided will talk about that...
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
I'm curious about how PINs would be more secure than my passwords already are

A pin can be pretty much as log as you like and can contain letters (Upper/Lowercase), numbers and special characters. So basically, they are still passwords.

Here is some info, including a Tutorial.

 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 Build 22631.5039
    Computer type
    PC/Desktop
    Manufacturer/Model
    Sin-built
    CPU
    Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz (4th Gen?)
    Motherboard
    ASUS ROG Maximus VI Formula
    Memory
    32.0 GB of I forget and the box is in storage.
    Graphics Card(s)
    Gigabyte nVidia GeForce GTX 1660 Super OC 6GB
    Sound Card
    Onboard
    Monitor(s) Displays
    5 x LG 25MS500-B - 1 x 24MK430H-B - 1 x Wacom Pro 22" Tablet
    Screen Resolution
    All over the place
    Hard Drives
    Too many to list.
    OS on Samsung 1TB 870 QVO SATA
    PSU
    Silverstone 1500
    Case
    NZXT Phantom 820 Full-Tower Case
    Cooling
    Noctua NH-D15 Elite Class Dual Tower CPU Cooler / 6 x EziDIY 120mm / 2 x Corsair 140mm somethings / 1 x 140mm Thermaltake something / 2 x 200mm Corsair.
    Keyboard
    Corsair K95 / Logitech diNovo Edge Wireless
    Mouse
    Logitech: G402 / G502 / Mx Masters / MX Air Cordless
    Internet Speed
    1000/400Mbps
    Browser
    All sorts
    Antivirus
    Kaspersky Premium
    Other Info
    I’m on a horse.
  • Operating System
    Windows 11 Pro 23H2 Build: 22631.4249
    Computer type
    Laptop
    Manufacturer/Model
    LENOVO Yoga 7i EVO OLED 14" Touchscreen i5 12 Core 16GB/512GB
    CPU
    Intel Core 12th Gen i5-1240P Processor (1.7 - 4.4GHz)
    Memory
    16GB LPDDR5 RAM
    Graphics card(s)
    Intel Iris Xe Graphics Processor
    Sound Card
    Optimized with Dolby Atmos®
    Screen Resolution
    QHD 2880 x 1800 OLED
    Hard Drives
    M.2 512GB
    Antivirus
    Defender / Malwarebytes
    Other Info
    …still on a horse.
A pin can be pretty much as log as you like and can contain letters (Upper/Lowercase), numbers and special characters. So basically, they are still passwords.

Here is some info, including a Tutorial.

Oh thanks! I'll look at that one first when I get to come back to the subject. :)
 

My Computers

System One System Two

  • OS
    Windows 11 Home 23H2 (Retail)
    Computer type
    PC/Desktop
    CPU
    Intel Core i5-12600K
    Motherboard
    ASRock B760M PG Riptide
    Memory
    Crucial Classic DDR5-4800 16GB
    Monitor(s) Displays
    1 good old Benq model
    Hard Drives
    Kingston KC3000 SSD 512GB PCIe 4.0 M.2 2280 NVMe
    PSU
    Seasonic G12 GM 750Watt
    Case
    metal, 15+ years old, ATX/mATX
    Cooling
    Thermalright Peerless Assassin 120
    Keyboard
    Lenovo, wired
    Mouse
    Logitech, wired
    Browser
    Chrome
    Other Info
    First time DIY build.
  • Operating System
    Windows 11 Home 23H2, Build: 22631.4751 (OEM)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer Aspire XC-1760
    CPU
    Intel Core i5-12400
    Motherboard
    Acer Andrew H610 (PCIe Gen 4)
    Memory
    8 GB DDR4
    Graphics card(s)
    Intel(R) UHD Graphics 730
    Sound Card
    Integrated, HD Audio
    Monitor(s) Displays
    old Samsung
    Screen Resolution
    1920x1080, 60 Hz
    Hard Drives
    M.2 PCIe NVMe SSD (WD or Kingston, not sure), 512GB, partitioned into C & D drives.
    PSU
    Brand unknown. 180W. (80 Plus Gold certification)
    Case
    Slim, DTX
    Cooling
    Brand unknown. Air cooling.
    Mouse
    Logitech (wired)
    Keyboard
    Lenovo (wired)
    Browser
    Chrome
    Other Info
    Extra CPU details:
    Intel UHD Graphics, 6 cores, 12 threads, 2.5 GHz, LGA1700, Intel H610 Chipset.
Well it looks like I can at least in part already answer my own question. Seems that when you go password lists you absolutely positively have to have a phone because Microsoft tells me that I must first set up authenticator on my phone before I can go passwordless. So that makes passwordless login unfortunately a complete no go for me.
And that is where the problem is. Phones can fail which is why I lost 2FA access where there is no recovery method available so either the phone gets fixed assuming you didn't have a data loss, that's the drawback. And if something went wrong with the device, one would also have a problem. There are authenticator apps that are portable and don't even require installation such as WinAuth which was what I had to use to get access back to my Nvidia account.
 

My Computer

System One

  • OS
    Windows XP/7/8/8.1/10/11, Linux, Android, FreeBSD Unix
    Computer type
    Laptop
    Manufacturer/Model
    Dell XPS 15 9570
    CPU
    Intel® Core™ i7-8750H 8th Gen 2.2Ghz up to 4.1Ghz
    Motherboard
    Dell XPS 15 9570
    Memory
    64GB using 2x32GB CL16 Mushkin redLine modules
    Graphics Card(s)
    Intel UHD 630 & NVIDIA GeForce GTX 1050 Ti with 4GB DDR5
    Sound Card
    Realtek ALC3266-CG
    Monitor(s) Displays
    15.6" 4K Touch UltraHD 3840x2160 made by Sharp
    Screen Resolution
    3840x2160
    Hard Drives
    Toshiba KXG60ZNV1T02 NVMe 1TB SSD
    PSU
    Dell XPS 15 9570
    Case
    Dell XPS 15 9570
    Cooling
    Stock
    Keyboard
    Stock
    Mouse
    SwitftPoint ProPoint
    Internet Speed
    Comcast/XFinity 1.44Gbps/42.5Mbps
    Browser
    Microsoft EDGE (Chromium based) & Google Chrome
    Antivirus
    Windows Defender that came with Windows
And that is where the problem is. Phones can fail which is why I lost 2FA access where there is no recovery method available so either the phone gets fixed assuming you didn't have a data loss, that's the drawback. And if something went wrong with the device, one would also have a problem. There are authenticator apps that are portable and don't even require installation such as WinAuth which was what I had to use to get access back to my Nvidia account.
I'm in an awkward position. Eventually I can use a phone again, but I sometimes just like to not drag my phone with me and I also have an issue where by battery is suddenly rapidly declining in capacity. It's just old and worn out, trying to nurse it along until the next gen of phones come out :-).

I always have multiple alternative authentication methods, so I have no worry there. It is simply that when choosing the option to go passwordless, it insists on having you install Microsoft Authenticator with no option to use a different authenticator app for the initial setup.

BTW, I just performed a clean install of 26100.3915 and created a brand-new Microsoft account. There was absolutely no push or any effort at all to any to get me to go passwordless.
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-built
    CPU
    Intel i7 11700K
    Motherboard
    ASUS Prime Z590-A MB
    Memory
    64GB (Waiting for warranty replacement of another 64GB for 128GB total)
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe SSD
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    3 x 512GB 2.5" SSD
    1 x 4TB 2.5" SSD
    5 x 8TB Seagate Barracuda HDD
    PSU
    Corsair HX850i
    Case
    Corsair iCUE RGB 5000X mid tower case
    Cooling
    Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Home Computer Specifications, Configuration, and Usage Notes General Specifications ASUS Prime Z590-A motherboard, serial number M1M0KC222467ARP Intel Core i7-11700K CPU (11th Gen Rocket Lake / LGA 1200 Socket) 128GB Crucial Ballistix RGB DDR4 3200 MHz DRAM (4 x 32GB) Corsair iCUE RGB 5000X mid tower case Noctua NH-D15 chromax.black CPU cooler Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Corsair LL-120 RGB Fans (Qty. 3)
    Keyboard
    Corsair K70 Max RGB Magnetic Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    The five 8TB drives and three 512GB SSDs are part of a DrivePool using StableBit DrivePool software. The three SSDs are devoted purely to caching for the 8TB drives. All of the important data is stored in triplicate so that I can withstand simultaneous failure of 2 disks.

    Networking: 2.5Gbps Ethernet and WiFi 6e
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
@TraderGary,

a quick question for you: When you setup your password manager program and added passkeys to it, am I understanding that you can then take that password database to another machine and use those passkeys on that machine? I am running a password manager as of today, but all my machines already have local passkeys so I have not tried that yet. I just wanted to be sure I understood correctly because I know that normally a passkey is only valid on the local machine.
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-built
    CPU
    Intel i7 11700K
    Motherboard
    ASUS Prime Z590-A MB
    Memory
    64GB (Waiting for warranty replacement of another 64GB for 128GB total)
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe SSD
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    3 x 512GB 2.5" SSD
    1 x 4TB 2.5" SSD
    5 x 8TB Seagate Barracuda HDD
    PSU
    Corsair HX850i
    Case
    Corsair iCUE RGB 5000X mid tower case
    Cooling
    Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Home Computer Specifications, Configuration, and Usage Notes General Specifications ASUS Prime Z590-A motherboard, serial number M1M0KC222467ARP Intel Core i7-11700K CPU (11th Gen Rocket Lake / LGA 1200 Socket) 128GB Crucial Ballistix RGB DDR4 3200 MHz DRAM (4 x 32GB) Corsair iCUE RGB 5000X mid tower case Noctua NH-D15 chromax.black CPU cooler Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Corsair LL-120 RGB Fans (Qty. 3)
    Keyboard
    Corsair K70 Max RGB Magnetic Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    The five 8TB drives and three 512GB SSDs are part of a DrivePool using StableBit DrivePool software. The three SSDs are devoted purely to caching for the 8TB drives. All of the important data is stored in triplicate so that I can withstand simultaneous failure of 2 disks.

    Networking: 2.5Gbps Ethernet and WiFi 6e
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
@TraderGary,

a quick question for you: When you setup your password manager program and added passkeys to it, am I understanding that you can then take that password database to another machine and use those passkeys on that machine? I am running a password manager as of today, but all my machines already have local passkeys so I have not tried that yet. I just wanted to be sure I understood correctly because I know that normally a passkey is only valid on the local machine.
I have 1Password installed on both my main and second computer. 1Password uses the same password database and passkeys on both my main and second computer.
 

My Computer

System One

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Dell XPS 16 9640
    CPU
    Intel Core Ultra 9 185H
    Memory
    32GB LPDDR5x 7467 MT/s
    Graphics Card(s)
    NVIDIA GeForce RTX 4070 8GB GDDR6
    Monitor(s) Displays
    16.3 inch 4K+ OLED Infinity Edge Touch
    Screen Resolution
    3840 x 2400
    Hard Drives
    1 Terabyte M.2 PCIe NVMe SSD
    Cooling
    Vapor Chamber Cooling
    Mouse
    None
    Internet Speed
    960 Mbps Netgear Mesh + 2 Satellites
    Browser
    Microsoft Edge (Chromium) + Bing
    Antivirus
    Microsoft Windows Security (Defender)
    Other Info
    Microsoft 365 subscription
    Microsoft OneDrive 1TB Cloud
    Microsoft Visual Studio
    Microsoft Visual Studio Code
    Microsoft Sysinternals Suite
    Microsoft BitLocker
    Microsoft Copilot
    Macrium Reflect X subscription
    Dell Support Assist
    Dell Command | Update
    1Password Password Manager
    Amazon Kindle for PC
    Lightroom/Photoshop subscription
    Interactive Brokers Trader Workstation
Back
Top Bottom