Users advised to drop passwords and make room for passkeys

2026-04-24T20:51:52Zede6f2d7a0d53f05e544cd851071a6e21b948ba641e9ddb3eaa7f2934943fb55
Arm serversCISAChina-linked espionageCisco FirepowerFirestarter backdoorGPT-5.5 safeguards','AI safety'LLM agentsMeta AccountNCSCOpenAIRustUK NCSCUbuntu 26.04 LTSaccount managementauthenticationbotnetsedge devicesindirect prompt injectionlive patchingmemory-safe componentspasskeyspersistencepower-cycle removalprompt injectionrouters

What happened

News roundup highlights a major push by the UK NCSC to replace passwords with passkeys as the preferred consumer authentication method; growing real-world abuse of indirect prompt injection targeting LLM-powered agents; and an NCSC advisory on China-linked large-scale covert networks built from compromised routers and edge devices. CISA and the UK NCSC warn of a persistent, likely state-sponsored backdoor ("Firestarter") affecting Cisco Firepower/Secure Firewall devices that in observed cases can only be removed by power-cycling hardware. Other items: Meta consolidating account sign-in/setting

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
ede6f2d7a0d53f05e544cd851071a6e21b948ba641e9ddb3eaa7f2934943fb55
Enrichment time
2026-04-24T20:51:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.