Project Overview

About The Project

Challenging outdated authentication models with secure, hardware-backed innovation.

The Problem We Solve

⚠️

Despite improvements like MFA and biometrics, password systems remain the most exploited part of authentication.

Over 80% of cyberattacks stem from weak or stolen passwords(Verizon DBIR 2023)
💡

Our project challenges this outdated model by introducing an end-to-end Passkey-based authentication protocol for Android devices.

Project Objectives

🔐
Build a password-less authentication system using Android certificates and attestation
Objective 1
🚫
Eliminate passwords completely
Objective 2
🔑
Create a dual-key structure combining Software + Hardware keys
Objective 3
🔄
Ensure nonce freshness for replay protection
Objective 4
📱
Develop secure login and account-transfer mechanisms
Objective 5
Test the protocol's usability, security, and performance in real-world conditions
Objective 6

(Report Pages 9-10)