Device Bound Session Credentials Tie Authentication Cookies to Specific ComputersGoogle is prototyping a method to stymie hackers who get around multifactor security by stealing authentication cookies from desktops. Google says its proposal for cryptographically tying authentication tokens to computers will succeed where previous attempts such as Token Binding failed.

  • mystik@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    3 months ago

    As long as the device can do this operation without a connection or permission from Google, Apple, Microsoft, or anyone else besides the user in question, this is great.