User authentication in mobile and web applications is a very common and integral use case. Implementing basic authentication is an easy solution for developers but comes with several pitfalls that impair user experience like (re-)entering passwords, the need to create a new unique password or even just the input of personal data on a flaky keyboard while registering a new account.
In this talk the security flaws and UX implications of passwords will be discussed and Tim will highlight which different techniques exist that are able to offer a more mobile friendly flow. Highlighting authorization and authentication techniques like OAuth, OpenID Connect and even hardware features like Bluetooth Low Energy this talk will be interesting for anyone who's facing a situation where creating and storing user accounts matters.
19. @SeraAndroid#DeathToPW
1. 123456
2. password
3. 12345 up 17
4. 12345678 down 1
5. qwerty down 1
6. 1234567890
7. 1234 up 9
8. baseball new
9. dragon new
10. football new
11. 1234567 down 4
12. monkey up 5
13. letmein up 1
14. abc123 down 9
15. 111111 down 8
16. mustang new
17. access new
18. shadow
19. master new
20. michael new