Estimated reading time: 3 minutes
Passkeys, Phishing, and the Passwordless Future: HYPR CEO Outlines Cybersecurity’s Next Chapter
In the latest episode of the Cyber Insurance News Podcast, host Martin Hinton delves into digital defense with HYPR CEO Bojan Simic. The conversation charts the evolution from traditional passwords to passkeys and tackles urgent cybercrime threats like phishing, human error, and deepfakes.
Simic co-founded HYPR after a software breach sparked his journey into cybersecurity. He believes passwords are no longer viable. Originally created for non-networked computers, passwords have become dangerously outdated. Hackers exploit them with ease, and users often fail to manage them securely.
Passkeys: A New Standard
Simic champions passkeys as the future of secure access. Backed by the FIDO Alliance, passkeys work by linking credentials to physical devices like smartphones. They can’t be written down, shared, or phished. They remove the weakest link, human error.
Big names like Google, Apple, Microsoft, and banks now support passkeys. Even CVS lets users refill prescriptions using them. Once set up, passkeys sync across devices, offering convenience and eliminating the need to remember complex passwords.
Phishing-Proof and Foolproof
Phishing scams trick users into entering passwords on fake sites. Passkeys can’t be used on spoofed URLs. They only work on the legitimate, registered domain. This innovation seals one of the most exploited gaps in online security.
Get The Cyber Insurance Upload Delivered
Every Sunday
Subscribe to our newsletter!
The Deepfake Danger
Simic warns that deepfakes are escalating. He cites cases where synthetic voices and videos trick employees into transferring millions. Criminals can now pose as CFOs or family members. The threat is real, and it’s growing fast.
To fight back, HYPR is pioneering multi-factor verification (MFV). This includes device recognition, location tracking, and document scanning to confirm identity before issuing a passkey.
Human Error: Still the Top Threat
Simic doesn’t blame users for breaches. Instead, he points to flawed systems. He believes that stronger design can reduce accidental leaks, such as IT help desks, which are inherently helpful, as it’s in their name, after all, being tricked into giving access to hackers.
Rethinking Roles: Security Isn’t Just IT Support
One striking insight: organizations must separate IT support from cybersecurity. The instinct to help can backfire. Security requires verification, not just assistance.
A Future Fueled by Identity Security
Simic closes with a call to reimagine how identity works in a digital-first world. As AI agents rise, how will they authenticate and act on our behalf? Passkeys could be the foundation for that future.
The conversation underlines an urgent truth: cybersecurity must evolve faster than the threats.