CoinFeed
SlowMist CISO: WebAuthn key login has bypass risks - CoinFeed
Time 07:05

SlowMist CISO: WebAuthn key login has bypass risks

September 22, 2025
CoinFeed News

SlowMist Technology's Chief Information Security Officer 23pds published an article on the X platform stating that a new type of attack can bypass WebAuthn key login. Malicious extensions or XSS vulnerabilities can hijack APIs to force downgrade password login or steal credentials, allowing identity impersonation without physical contact with the device.

Back to News Feed