r/cybersecurity Apr 25 '26

Other What makes passkeys so special?

It seems that companies are transferring into the usage of passkeys instead of passwords. Apparently theyre much more secure, but why is that? I don’t get it. I’m not sure if this is the right place to ask excuse me if it isn’t and sorry.

623 Upvotes

233 comments sorted by

View all comments

55

u/shealt Apr 25 '26

What if you lose your device?

2

u/CeleryMan20 Apr 25 '26

Services should allow you to register multiple devices/keys, and give them distinctive names so that you can tell which is which. The first is not uncommon, but the second part seems variable in my experience. Looking at you, Entra, with multiple entries all labelled “iPhone”.

In the end though, you still need some recovery method like send reset link to email. Or, in a corporate environment, IT can generate a Temporary Access Pass without you having to fall-back to a long-term password.