The Register: Who are you again? Infosec experiencing ‘Identity crisis’ amid rising login attacks

Source URL: https://www.theregister.com/2025/08/27/ciscos_duo_identity_crisis/
Source: The Register
Title: Who are you again? Infosec experiencing ‘Identity crisis’ amid rising login attacks

Feedly Summary: Vendor insists passkeys are the future, but getting workers on board is proving difficult
Infosec pros are losing confidence in their identity providers’ ability to keep attackers out, with Cisco-owned Duo warning that the industry is facing what it calls “an identity crisis."…

AI Summary and Description: Yes

Summary: The text highlights the challenges organizations face in adopting passkeys as a secure identity management solution. It emphasizes growing concerns among information security professionals regarding the reliability of identity providers, such as Cisco-owned Duo, amidst an ongoing identity crisis in the industry.

Detailed Description: The provided text sheds light on the current state of identity management solutions, specifically focusing on the implementation of passkeys—a technology increasingly viewed as the future of secure authentication. Despite their potential benefits, organizations are encountering significant hurdles in persuading employees to adopt this new approach. Key points include:

– **Identity Crisis**: The article refers to a term used by Cisco’s Duo, indicating a fundamental lack of confidence among security professionals concerning the effectiveness of current identity providers in safeguarding against attacks.

– **Challenges in Adoption**:
– Workers may resist transitioning to passkeys due to unfamiliarity or perceived inconvenience.
– There is often a gap in user education about the security benefits offered by passkeys compared to traditional password systems.

– **Implications for Security Professionals**:
– As organizations reconsider their identity management strategies, security professionals need to address the underlying trust issues in their identity providers.
– The shift to passkeys might demand a reevaluation of user training programs and communications around the security features of this technology.

– **Broader Context**: This situation reflects a critical moment within the broader framework of information security—especially as organizations seek more robust defenses to combat increasing threats related to identity theft and account compromise.

This analysis underscores the importance for security and compliance professionals to prioritize user trust and education when implementing advanced authentication methods like passkeys.