OpenAI rolls out passkeys for ChatGPT, partners with Yubico
AI-summarised brief · reviewed before publication
OpenAI has introduced Advanced Account Security for ChatGPT and Codex accounts, allowing users to opt for passwordless sign-in using FIDO-compliant security keys or software-based passkeys. The feature, built on FIDO2 and WebAuthn standards, aims to reduce phishing and account takeover risks. OpenAI has partnered with Yubico to offer custom YubiKeys to users at a special price, targeting phishing-resistant authentication. The partnership follows OpenAI's internal deployment of YubiKeys to protect employees and infrastructure.
💡 Why It Matters
- · The widespread adoption of passwordless authentication could drastically reduce the threat of unauthorized access to sensitive data in AI accounts worldwide, as more companies rush to adopt AI and create security gaps.
- · By prioritizing phishing-resistant protection, OpenAI is setting a precedent for the industry to follow, potentially leading to a significant reduction in cyber threats targeting AI workflows.