Find notable cyber news and cases, enriched with sources, timelines, and signals.

NCSC passkey login guidance shift

Public Sector Action
First reported
Last updated
Happening score
H score 18
1 unique sources, 1 articles

Summary

Hide ▲

The UK National Cyber Security Centre (NCSC) has backed passkeys as the first choice of login and stopped recommending passwords except where passkeys are unavailable, changing official authentication guidance for consumers and businesses. The policy shift makes passkeys the default option for services that support them and pushes organizations toward stronger sign-in methods. It follows about 12 months of ecosystem progress, including work with the FIDO Alliance and reported success using passkeys in the NHS. The NCSC also signaled that further guidance for business users may follow.

Related Happenings

ICO releases five-step AI cyber guidance

Public Sector Action
First: 14.05.2026 12:00 Last: 14.05.2026 12:00 Sources 1

About this happening: The **UK Information Commissioner’s Office (ICO)** released a **five-step guide** urging organizations to prepare for **AI-powered cyber threats**, making it clear that stronger r...

UK Cyber Resilience Pledge pushes board-level security and supply-chain hardening

Defensive Guidance
First: 13.05.2026 12:05 Last: 13.05.2026 12:05 Sources 1

About this happening: The **UK government's Cyber Resilience Pledge** will launch later this year, giving organizations a concrete set of steps to strengthen defenses and reduce supply-chain risk. It a...

UK government cyber resilience funding and pledge

Public Sector Action
First: 22.04.2026 17:10 Last: 22.04.2026 17:10 Sources 1

About this happening: **UK government** announced **£90m ($120m)** in cybersecurity funding and a new **Cyber Resilience Pledge**, aiming to strengthen **national cyber resilience**. The initiative was...

NCSC-led NHS cyber resilience program

Public Sector Action
First: 20.04.2026 12:30 Last: 20.04.2026 12:30 Sources 1

About this happening: The **UK National Cyber Security Centre (NCSC)** has outlined an **ongoing cyber resilience plan** for the **National Health Service (NHS)**, with the effort aimed at reducing ris...

UK and EU cyber rules reshape CNI compliance

Regulatory/Legal (General)
First: 19.03.2026 11:00 Last: 19.03.2026 11:00 Sources 1

About this happening: **UK** and **EU** cyber regulations are coming into force, raising compliance pressure for **critical national infrastructure** organizations and reshaping security investment pri...

Timeline

  1. 23.04.2026 11:45 2 articles · 1mo ago

    NCSC backs passkeys for consumer login

    Industry Or Public Sector Update

    The UK’s National Cyber Security Centre says passkeys should now be consumers’ first choice of login and no longer recommends passwords except where passkeys are unavailable on a digital service. The guidance also tells businesses to use single sign on (SSO) wherever possible, reflecting broader progress across the passkey ecosystem and reported use within the National Health Service (NHS).

    Show sources