Blog

Guides, analysis & insights.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Embedding Passkeys into Your App Workflows: Why Authsignal's Approach Stands Out
Discover how to embed passkeys into your app workflows. Learn why Authsignal’s non-IdP approach enables seamless, risk-based authentication without the need for identity system overhauls—saving time and reducing friction.
Phishing resistant
Implementation
Passkeys
View article
Twilio Verify vs Authsignal: The Twilio Alternative That Does More With Less Dev Effort
Looking for a Twilio Verify alternative? Discover how Authsignal provides a complete step-up authentication solution with passkeys, adaptive MFA, and powerful no-code policy tools—all with minimal engineering effort.
Twilio Verify
Comparison
View article
How to Add Passkeys to Duende IdentityServer with Authsignal
Learn how to enhance your Duende IdentityServer setup with passkey authentication using Authsignal. Follow this step-by-step guide to enable secure, passwordless logins with biometric verification.
Duende IdentityServer
Passkeys
Passkeys implementation
Passwordless authentication
View article
Automating Chainalysis Workflows: How to Integrate Chainalysis KYT with AuthsignaI to Mitigate Crypto Crime and Streamline Operations
Automate your crypto compliance and fraud prevention with Chainalysis KYT and Authsignal. Instantly respond to high-risk blockchain transactions using no-code rules, re-KYC, and step-up authentication. Build a platform where legitimate customers experience minimal friction while suspicious transactions receive appropriate scrutiny.
Chainalysis
Crypto
No-code rules engine
View article
Supercharge Passwordless Authentication with AWS Cognito, Authsignal's Web SDK, and React
In this guide, we'll explore how you can pair Cognito with Authsignal's MFA capabilities using the AWS SDK, Authsignal Web SDK, and React. This combination gives you the complete freedom to build your own custom UI while maintaining all the security standards.
AWS
AWS Cognito
SDKs
Passwordless authentication
View article
How to add MFA to Duende IdentityServer with Authsignal
Learn how to implement multi-factor authentication (MFA) in your Duende IdentityServer using Authsignal. Secure your ASP.NET Core login flow with step-by-step instructions, complete code examples, and GitHub resources.
Duende IdentityServer
Multi-factor authentication
Guides
View article
How to add passkeys to Keycloak with Authsignal: A Step-by-Step Guide
Learn how to enhance your Keycloak authentication flow by adding passkeys with Authsignal. This step-by-step guide covers setup, passkey enrollment, autofill implementation, and custom Keycloak configurations for a seamless and secure user experience.
Keycloak
Passkeys
Passkeys implementation
Passwordless authentication
View article
Beyond Standard Authentication: When to Augment AWS Cognito with Authsignal
Modernize authentication effortlessly with Authsignal. While Cognito covers the basics, Authsignal adds the extra security and flexibility your app needs—seamlessly enhancing authentication without heavy engineering work.
AWS Cognito
Multi-factor authentication
Implementation
AWS
View article
Amazon Cognito Introduces Passwordless Authentication – but its built-in flows come with limitations
AWS Cognito’s passwordless authentication is a great step toward modern authentication, enhancing both security and user experience. Authsignal makes it exceptional by adding flexibility, advanced security features, and deeper user insights.
AWS Cognito
Passkeys
Passkeys implementation
Passwordless authentication
View article
NRF 2025 Retail Biometrics Review - Palm Biometrics by Authsignal in Partnership with Qualcomm.
Revolutionize retail with Authsignal's palm biometric payments and Identity platform. Showcased at NRF, Authsignal’s palm biometric IDX solution enables secure, contactless payments and identity verification. Powered by Qualcomm, it ensures blazing-fast, accurate, and secure user experiences.
palm-biometrics
Biometric authentication
Biometrics passkey binding
Press Release
View article
CISA Endorses FIDO Passkeys: Protecting Against Telecommunication Network Interception.
Authsignal helps organizations comply with the CISA Mobile Communications Best Practice Guidance by offering drop-in phishing-resistant passkeys, strong MFA fallback methods, and WhatsApp OTP as an encrypted and reliable alternative to SMS
CISA
Passkeys
SMS one-time-password
Whatsapp OTP
View article
UX Best Practices for Passkeys: Understanding Device-Initiated Authentication
Passkeys differ from traditional username-based methods for passwordless sign-in and MFA. This article will guide you on how to create the most effective passkey experience for your users, focusing on web browsers as the platform.
UX Guidelines
Passkeys
Implementation
View article
Add MFA to Keycloak using Authsignal: A Step-by-Step Guide
Authsignal offers an easy-to-integrate solution that simplifies the process of adding MFA to Keycloak.
Keycloak
Multi-factor authentication
Integration
Managing Authenticators
View article
Authsignal in partnership with MATTR claims authentication world first, binding Mobile Driver’s License (mDL) to Palm Biometrics
Authsignal has launched a world-first solution that binds a mobile driver's license (mDL) with Palm Biometrics.
palm-biometrics
Press Release
View article
Biometrics Passkey-Binding: Ensure Digital Credential Ownership and Real Human Presence
Learn about biometric passkey-binding pairs facial recognition with cryptographic passkeys for secure, seamless authentication, protecting against phishing, deepfakes, and fraud while improving user experience.
Biometric authentication
Biometrics passkey binding
Passkeys
View article
Passkey Recovery & Fallback: Can Passkeys Stand Alone and Fully Replace Passwords & MFA?
Passkeys simplify authentication and resist phishing, but can they truly replace passwords and MFA? Explores passkey fallback opinions, key challenges, and best practices, highlighting why passkeys are the future of authentication.
Passkeys
Passkeys implementation
Fallback
Biometric authentication
View article
Passwordless React UI Components: Add Passkeys to Your Client-Side App
Add authentication flows into your react app or website using Authsignal’s UI components with the React SDK. Fast-track passkeys and MFA implementation for your client-side app.
UI Components
React
Passkeys
View article
Synced vs Device-Bound Passkeys: How User Convenience and Authentication Experiences Vary.
Not all passkeys are the same. Synced and device-bound passkeys offer distinct benefits and trade-offs in security, access, and user experience. This guide covers the differences and key considerations for passkey recovery.
Passkeys
Synced passkeys
Device-bound passkeys
Passkey recovery
View article
How to Build a Secure Authentication Chain: Avoid Passkey Pitfalls and Enhance User Experience.
Learn how to build a secure authentication chain and avoid common passkey pitfalls. Discover key strategies to enhance security and user experience with passkeys and protect every stage of the authentication process.
Authentication Chain
No-code rules engine
Passkeys
Passwordless authentication
View article
How to enable self serve user authenticator management with Authsignal.
Follow our step-by-step guide on how to add a button that allows users to manage their authenticators directly from your e-commerce platform.
Managing Authenticators
Guides
View article
How to implement passkeys for a seamless E-commerce checkout experience.
In this guide, we’ll walk through how to use Authsignal’s email OTP authenticator and passkeys to create a seamless user experience for your e-commerce platform.
e-Commerce
Passkeys
Passwordless authentication
Implementation
View article
Are Face ID and Passkeys the Same? Exploring Key Differences.
The short answer is no. Face ID and passkeys are not the same, though they can complement each other in a seamless authentication experience. Here’s a breakdown:
Passkeys
Biometric authentication
Passwordless authentication
View article
Integrate Authsignal with Azure AD B2C Authentication for MFA, Passwordless, and Passkeys.
Enhance Azure AD B2C with Authsignal. Integrate MFA, passwordless login, and passkeys for improved security and user experience. Follow our guides for seamless integration and take control of your authentication journey.
Azure AD B2C
Integration
Authsignal
Passkeys
View article
Passkeys For The Airline Industry: How a world-leading airline deployed passkeys to uplift customer security and optimize user experience with Authsignal.
A world-leading airline partners with Authsignal to strengthen customer security through passkey implementation. Hear about the journey, challenges, and impact on digital interactions and data protection.
Airlines
Passkeys
Passwordless authentication
Call center authentication
View article
How to integrate AWS Cognito with Authsignal to implement passkeys in a native mobile app.
This post covers adding passkey sign-in to a React Native app using the Authsignal SDK. The steps also apply to apps built with our iOS, Android, or Flutter SDKs.
Passkeys
AWS
Cognito
React native
View article
How to integrate AWS Cognito with Authsignal to implement passkeys in a web app.
This blog post will step through how to expand on the previous example by adding support for passkeys. Passkeys are a secure, unphishable authentication factor and offer a seamless and user-friendly experience.
AWS
Cognito
Email OTP
Passwordless authentication
View article
How to integrate AWS Cognito with Authsignal to rapidly implement passwordless login and MFA.
How to implement passwordless login and MFA by pairing AWS Cognito with Authsignal. This step-by-step guide covers custom authentication flows, code examples, and leveraging Authsignal's pre-built UI for email OTP, magic links, and more.
AWS
Cognito
Passwordless authentication
Guides
View article
How to meet PSD2 Strong Customer Authentication (SCA) dynamic linking requirements with Authsignal.
A step-by-step guide on introducing authentication challenges for merchants and payment service providers to ensure compliance with PSD2's Strong Customer Authentication (SCA) dynamic linking requirements.
Passkeys
PSD2 SCA
Implementation
Compliance
View article
Adaptive MFA for Auth0: Customize MFA UX to reduce consumer friction without upgrading your plan.
In this blog post, we will dive deeper into how you can fine-tune the MFA user experience with only some minor tweaks to your integration code.
Guides
Auth0 integration
Risk based authentication
Flexible multi-factor authentication
View article
myGov Passkeys Implementation: Passkeys and MFA for Australia Government Services.
Explore myGov's passkey implementation, enhancing Australia's government digital security amid rising cybercrime. Learn about best practices for implementing passkeys.
FIDO2
Implementation
Passkeys Implementation Analysis
The Essential Eight
View article
WhatsApp for 2FA and MFA: Enhancing Customer Experience and Reducing Costs with WhatsApp OTP.
High SMS costs in Asia-Pacific and the prevalence of WhatsApp are driving enterprises to adopt WhatsApp OTPs for user verification, offering a cost-effective and reliable solution.
Whatsapp OTP
SMS one-time-password
Integration
View article
Revolut's Passkey Implementation: Benefits, Challenges & Technical Aspect.
Explore how Revolut enhances security and user experience with passkeys, leading the way in online banking innovation and fintech security.
Passkeys Implementation Analysis
Implementation
PSD2
FIDO2
View article
What does "FSC Standard No. 29" mean for Australian Superannuation Funds? - Protecting customers through Multi-factor Authentication (MFA).
Learn how FSC Standard No. 29 enhances fraud prevention for Australian superannuation funds with MFA. Discover how Authsignal helps ensure compliance and secure customer assets.
Compliance
Financial services
Multi-factor authentication
The Essential Eight
View article
Understanding Relying Parties for Passkeys: A Guide on what, why, and how to use them.
Relying parties (RPs) are crucial to ensuring passkeys are phishing-resistant. In more detail, we explain what relying parties are and how to configure them.
Passkeys
WebAuthn
Phishing resistant
FIDO2
View article
Mastercard Passkeys: A Secure and Seamless Future for Payments.
This blog explores Mastercard's innovative approach to passkeys and its implications for the future of payment security.
Implementation
Passkeys Implementation Analysis
FIDO2
View article
Unlock Passwordless for AWS Cognito.
Authsignal's flexible integration model allows you to easily switch from using AWS Cognito's hosted UI to using Lambda triggers inorder to implement Passwordless.
Cognito
AWS
Flexible multi-factor authentication
Implementation
View article
NIST 800-63B Passkeys Supplementary Guidelines: 2024 Part 2 Implementation.
Our initial analysis addressed the new NIST supplement for passkeys, breaking down the changes and clarifying positions regarding synced/syncable passkeys. In part 2, we focus on implementation considerations.
Compliance
FIDO2
NIST
Passkeys
View article
NIST Passkeys Supplementary Guidelines: April 2024 Insights - Part 1 - Authsignal
NIST’s April 2024 supplement provides guidance on syncable passkeys and their role in achieving AAL standards. Discover key updates for secure authentication.
Compliance
FIDO2
Passkeys
NIST
View article
Best Practices for Call Center Authentication & Fraud Prevention - Authsignal
Learn call center authentication best practices, including passive methods like FIDO2 passkeys and biometrics, to enhance security and prevent fraud.
Call center authentication
FIDO2
Account takeover
Deep fakes
View article
Rapid Response Playbook: Account Takeovers & Credential Stuffing
A rapid-response playbook tailored specifically for the aftermath of Account Takeovers (ATOs) and Credential Stuffing incidents.
Credential-stuffing
Account takeover
Flexible multi-factor authentication
Fraud prevention
View article
Enable MFA for Auth0 with Authsignal in 5 Easy Steps - Authsignal
Discover how to set up MFA for Auth0 using Authsignal. Add passkeys and risk-based MFA with simple steps to improve security and user experience.
FIDO2
Flexible multi-factor authentication
No-code rules engine
Multi-factor authentication
View article
Protecting Loyalty Programs with Multi-factor Authentication
Loyalty programs drive relations and growth, but cyber threats surge with the value of accounts. Multi-factor authentication is now essential for security.
Loyalty programs
Customer journey
Fraud prevention
Multi-factor authentication
View article
Passkeys and PSD2 SCA: Streamlining Compliance - Authsignal
Explore how passkeys integrated with PSD2 SCA enhance transaction security. Authsignal’s platform streamlines compliance and user experience.
Passkeys
Compliance
FIDO2
Fraud prevention
View article
Top 3 Account Take Over (ATO) attack vectors to watch
We explore some of the vectors that will become more prolific and some mitigating controls.
Account takeover
FIDO2
View article
Flutter Passkeys SDK
Adding Passkeys support to your Flutter mobile app is now made extremely easy using Authsignal's latest Flutter Passkeys SDK release.
Passkeys
SDKs
APIs
View article
Java Passkeys back-end SDK
‍Authsignal's Java SDK allows engineers to implement passkeys server side calls in Java/JVM server environments.
Passkeys
SDKs
Passwordless authentication
Implementation
View article
Essential Eight: Understanding Phishing-Resistant MFA Updates - Authsignal
Discover the critical updates to the Essential Eight Maturity Model, including the rise of phishing-resistant MFA. Authsignal guides you through the new compliance requirements.
Multi-factor authentication
Passkeys
The Essential Eight
Passwordless authentication
View article
How to champion passkeys within your organization.
This article aims to give talking points of identity or security professionals, and a framework to champion the adoption of passkeys within their organization.
Passkeys
Passwordless authentication
FIDO2
View article
Meeting MFA Control Requirements for Compliance - Authsignal
Understand MFA control requirements for ISO 27001, PCI DSS, and SOC 2. Learn how Authsignal helps you meet compliance with seamless multi-factor authentication.
Multi-factor authentication
Flexible multi-factor authentication
Compliance
View article
Passkeys APIs and SDKs: Simplifying Secure Implementation
Passkeys APIs and SDKs - A guide to easily implement Passkeys. Educating customers on the benefits of passkeys is crucial in building adoption.
Passkeys
Passwordless authentication
APIs
SDKs
View article
Zero trust in consumer/B2C authentication
Zero trust is a security model that assumes that no user or device can be trusted, even if they are inside the network perimeter.
Passwordless authentication
Multi-factor authentication
Fraud prevention
Zero trust
View article
Passkeys Support for AWS Cognito & Amplify in iOS & Android - Authsignal
Learn how to add passkeys to AWS Cognito and Amplify in iOS and Android applications using React Native with our easy-to-follow guide.
Passkeys
Passwordless authentication
AWS
AWS Cognito
View article
Auth0 Alternatives: Flexible Solutions Without Migration - Authsignal
Explore cost-effective Auth0 alternatives that don’t require migration. Plug in Authsignal to gain flexibility and enhance your customer authentication journey.
Multi-factor authentication
Integration
Auth0 integration
View article
Passkeys Mobile Native SDKs
Authsignal is proud to release our latest feature: Mobile Native SDKs for Passkeys. This includes platform support for iOS, Android and cross-platform support..
Passkeys
Passwordless authentication
SDKs
Risk based authentication
View article
Understanding Passkeys: Functionality and Why Authsignal Leads in Passkey Deployment
Passkeys are unique combinations of characters, such as passwords or cryptographic keys, used to authenticate and authorize users. They enable the removal of...
Passkeys
Flexible multi-factor authentication
View article
Push Authentication: Optimal Mobile Authentication Experience
Push authentication, a mobile-centric method, keeps the user journey within the app by sending notifications to the device, relying on trusted device possession for security.
Push authentication
View article
Authsignal and iProov
Authsignal ecosystem expands with iProov global partnership to bring biometrics to Authsignal's suit of tools.
Fraud prevention
Passwordless authentication
Partnerships
View article
Top Fraud Mitigation Tools: Guide to Prevention Vendors
The best fraud prevention and mitigation software tools should offer real-time feedback.
Fraud prevention
Partnerships
View article
Passwordless and Adaptive MFA for Microsoft Azure AD B2C
Authsignal integrates with Microsoft Azure AD B2C, enabling tenants to quickly set up complex MFA and passwordless user journeys in hours using Open ID Connect.
Passwordless authentication
Push authentication
Flexible multi-factor authentication
Azure AD B2C
View article
SMS-Based Authentication: Why It’s No Longer Enough for Security - Authsignal
SMS-based authentication is no longer secure enough to protect accounts. Learn why and explore safer alternatives like passkeys and security keys.
Multi-factor authentication
SMS one-time-password
View article
Guide to the Best Passwordless Authentication Tools - Authsignal
Explore the best passwordless authentication tools. This guide covers top solutions like Authsignal and tips on implementing secure flows.
Passwordless authentication
Multi-factor authentication
View article
Best Adaptive MFA and Passwordless Authentication Explained - Authsignal
Revolutionize your security with adaptive MFA. Learn how flexible, dynamic authentication and risk assessment improve security and user experience.
Multi-factor authentication
Fraud prevention
Passwordless authentication
Flexible multi-factor authentication
View article
Authsignal & Deduce
Authsignal a world leader in Identity Orchestration and Passwordless Authentication is excited to annouce a new technology partnership with Deduce.
Passwordless authentication
Deduce
Fraud prevention
Partnerships
View article
Authsignal Launches Passwordless Authentication & Fraud Rules in Europe and Australia
Auththsignal's Passwordless Authentication and Fraud Rules engine is live in Europe and Australian regions.
Passwordless authentication
View article
What is a no-code fraud rules engine?
At Authsignal, we created a no-code fraud rules engine to enable FraudOps teams to design their own rules, deploy and...
No-code rules engine
Multi-factor authentication
View article
Authsignal & Sekura Mobile!
Excited to announce our strategic partnership with Sekura Mobile Intelligence, empowering Authsignal with their global mobile intelligence footprint.
Sekura
Partnerships
View article
Authsignal Yubikey Integration! Win a Yubikey
Authsignal is excited to announce our integration and support for Yobico Yubikeys. Authsignal's listing in the self-certified Yubikey marketplace
Passkeys
Yubikey
Passwordless authentication
Fraud prevention
View article
The Top Types of Fraud
Account Takeovers, Sim Swapping, Automation, Crypto Attacks and Synthetic Identities are now the top choices for modern cybercriminals.
Passwordless authentication
Passkeys
Multi-factor authentication
View article
Increased digitization, increased fraud risk
fintech sector has grown at exponential rates, fraud costs are hitting new records. UK’s Justice Committee announced that consumers were scammed
Multi-factor authentication
Passwordless authentication
View article
Sim Swap Fraud is our generation's Y2K moment
Scammers deceive your carrier to activate their SIM, seizing control of your number.
Fraud awareness
View article
What is Passwordless Authentication?
Passwordless authentication is a modern way to authenticate a user’s identity without the user needing to remember a password. Authsignal enables
Passwordless authentication
Multi-factor authentication
View article
Optimize Your Customer Journey: Key Places for Passwordless Authentication
Adaptable Multifactor Authentication Made Easy. Here's 4 places you should secure with MFA today.
Passwordless authentication
Customer journey
View article
Considerations for Deploying Multi-factor Authentication
A guide to minimising customer impact when deploying Multifactor Authentication. Adaptive Multifactor Passwordless Authentication by Authsignal.com
Multi-factor authentication
View article
Authentication Provider on NZ Government Marketplace: Multi-Factor Authentication (MFA) and Passwordless Solutions
Authsignal makes meeting stringent cybersecurity requirements simple for government agencies. Trusted by leading organizations like Air New Zealand and Trade Me.
Announcements
Compliance
View article
NIST's September 2024 Update to Password Guidelines: Improved User Experience.
Rather than focusing on complexity, the new guidelines emphasize usability, password length, and Password Blocklists, aiming to balance improved security and user-friendly practices.
NIST
View article

Secure your customers’ accounts today with Authsignal.