Duo Labs has found an authentication weakness in Apple's Device Enrollment Program (DEP) that could lead to privileged access, rogue device enrollment and social engineering attacks against an organization that uses DEP for mobile device management (MDM) auto-enrollment.
James Barclay and Nick Steele recently shared their thoughts on a passwordless future during a Twitter chat with Yubico. Get their insights on the pain points of passwords, their hopes for the future, and explore some of our resources around industry advancements paving the way, like passwordless authentication, multi-factor authentication and WebAuthn.
Humans Only: Duo Mobile and Android Protected Confirmation Duo Labs / Featured Article
Duo has been working with Google since last year on the Android Protected Confirmation API - a way to verify that only humans are responding to a prompt - and we've prototyped an integration with Duo Mobile to enhance 2FA security.
Learn more about DuoAPISwift, a new API client for the Swift Programming language on GitHub. Now Duo's APIs are accessible to more developers & projects!
At Duo Labs, we're always interested in how quickly users adopt software updates. That's why we recently looked at our population of Mac users and the distribution of OS X versions. Here's the synopsis of our research, as well as recommendations for securing the Macs that access your corporate data.