WeAreDevelopers LIVE Sep 25, 2024

Passwordless Web 1.5

Paweł Łukaszuk

Traditional authentication is broken, but deploying Passkeys isn't just a simple NPM import. Master the complex WebAuthn specification to build virtually perfect, phishing-resistant logins for your applications.

Pause
Mute Enter Fullscreen
#1 about 3 min

Common issues with creating and remembering diverse passwords

The challenges of generating, memorizing, and reusing traditional combinations across numerous internet accounts.

#2 about 3 min

Counterproductive effects of mandatory password rotation policies

User behaviors and security compromises that occur when businesses force frequent password changes.

#3 about 3 min

Evaluating password managers and physical credential tracking methods

The practical realities and security trade-offs of storing hundreds of personal and business logins.

#4 about 3 min

Exposing user credentials through massive server data breaches

How weak hashing algorithms and logging errors lead to billions of compromised user combinations.

#5 about 4 min

The vulnerability of two-factor authentication to live phishing attacks

How malicious actors bypass code checks and the hardware cost constraints of preventing proxies.

#6 about 4 min

Introducing passkeys and the web authentication protocol components

The hardware and software puzzle pieces needed to adopt asymmetric cryptography for digital verification.

#7 about 4 min

Registering and logging in with primary device passkeys

The seamless user workflow for connecting profiles to local hardware using standard screen locks.

#8 about 4 min

Implementing cross-device authentication and proximity phishing resistance

Connecting computing environments to mobile credentials securely via encrypted bluetooth signals and domain checks.

#9 about 4 min

Synchronizing digital keys across ecosystems and hardware limitations

Exploring storage options spanning integrated cloud accounts, dedicated vaults, and constrained physical tokens.

#10 about 3 min

Engineering challenges and complexities of implementing web authentication

The extensive manual coding and protocol testing developers need to integrate strict security benchmarks.

Matching moments

3:17 min

Platform integration and synchronization using passkeys

Clemens Hübner Clemens Hübner · WWC 2023

1:53 min

Overcoming barriers to passwordless authentication adoption

Christoph Menzel Christoph Menzel · WWC Europe 2026

4:13 min

Hardware keys and mitigating persistent password vulnerabilities

Chris Heilmann +2 · LIVE

1:53 min

Demonstration of passwordless registration and login

Clemens Hübner Clemens Hübner · WWC 2023

2:09 min

Replacing traditional website logins with biometric web passkeys

Gift Egwuenu · WWC 2023

3:35 min

How passkey architecture provides built-in phishing resistance

Martina Kraus Martina Kraus · WWC Europe 2026

Upcoming sessions on this topic

Open session

World Congress 2026 North America

Secure-by-Inclusion: Preventing Accessibility Barriers from Becoming Security Vulnerabilities

Radostina (Ina) Tsvetkova

Norwegian Directorate of Labour and Welfare (NAV), Senior Advisor in Digital Accessibility and Inclusive Design

Radostina (Ina) Tsvetkova
Open session

World Congress 2026 North America

SecurePrompt: Building a Pre-Flight Security Layer for Agentic AI

Ravi Sastry Kadali

AI/ML Engineer at General Motors

Ravi Sastry Kadali
Open session

World Congress 2026 North America

Securing AI Agent Infrastructure: Identity, Attestation, and Trust at Scale

Abdel Fane

Founder of OpenA2A

Abdel Fane
Open session

World Congress 2026 North America

Responsible AI Architecture with Zero Trust Agents

Ashok Prakash

Staff ML Engineer at Apple

Ashok Prakash
Open session

World Congress 2026 North America

From Software Agents to Physical Devices: Inside the Agentic Hardware Stack

Michael Yuan, Vivian Hu

Michael Yuan
Vivian Hu
Open session

World Congress 2026 North America

On the Public Clock: Open-Source Defense When You're Not in the Club

Nicholas Muy

VP Engineering Platform and Security at Scrut.io

Nicholas Muy