Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity

As reliance on digital services grows, traditional password-based authentication methods have been increasingly scrutinized due to their susceptibility to cyber-attacks, including phishing and brute force attacks. This has led to a shift toward passwordless authentication, an approach that promises...

Full description

Saved in:
Bibliographic Details
Main Authors: Mohd Imran Md Yusop, Nazhatul Hafizah Kamarudin, Nur Hanis Sabrina Suhaimi, Mohammad Kamrul Hasan
Format: Article
Language:English
Published: IEEE 2025-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/10839395/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1832586882777612288
author Mohd Imran Md Yusop
Nazhatul Hafizah Kamarudin
Nur Hanis Sabrina Suhaimi
Mohammad Kamrul Hasan
author_facet Mohd Imran Md Yusop
Nazhatul Hafizah Kamarudin
Nur Hanis Sabrina Suhaimi
Mohammad Kamrul Hasan
author_sort Mohd Imran Md Yusop
collection DOAJ
description As reliance on digital services grows, traditional password-based authentication methods have been increasingly scrutinized due to their susceptibility to cyber-attacks, including phishing and brute force attacks. This has led to a shift toward passwordless authentication, an approach that promises enhanced security and user experience. This paper provides a comprehensive review of passwordless authentication techniques, analysing their application in user identity verification across multiple platforms. Various methods such as biometrics, security keys, and token-based systems are explored for their efficacy in mitigating security vulnerabilities. The review highlights the advantages of passwordless authentication, including improved security, reduced user friction, and compatibility with modern identity management frameworks like FIDO2. Challenges such as usability issues, cost of deployment, and scalability are also discussed. Moreover, the paper identifies future research areas aimed at overcoming these challenges and facilitating the broad adoption of passwordless authentication in critical industries such as healthcare, finance, and public services. Future opportunities are outlined, emphasizing the need for real-world implementation, enhanced scalability, integration of AI-driven adaptive mechanisms, and innovative designs to improve user accessibility and system resilience. By consolidating existing knowledge and identifying gaps in current solutions, this study provides valuable insights for researchers and industry stakeholders seeking to enhance security through passwordless systems.
format Article
id doaj-art-b363e33cc7b04683bccc62d1e719b7c1
institution Kabale University
issn 2169-3536
language English
publishDate 2025-01-01
publisher IEEE
record_format Article
series IEEE Access
spelling doaj-art-b363e33cc7b04683bccc62d1e719b7c12025-01-25T00:02:42ZengIEEEIEEE Access2169-35362025-01-0113139191394310.1109/ACCESS.2025.352896010839395Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User IdentityMohd Imran Md Yusop0https://orcid.org/0009-0004-9032-0944Nazhatul Hafizah Kamarudin1https://orcid.org/0000-0002-6972-7967Nur Hanis Sabrina Suhaimi2https://orcid.org/0000-0002-3410-8533Mohammad Kamrul Hasan3https://orcid.org/0000-0001-5511-0205Centre for Cyber Security, Faculty of Information Science and Technology, Universiti Kebangsaan Malaysia, Bangi, Selangor, MalaysiaCentre for Cyber Security, Faculty of Information Science and Technology, Universiti Kebangsaan Malaysia, Bangi, Selangor, MalaysiaCentre for Cyber Security, Faculty of Information Science and Technology, Universiti Kebangsaan Malaysia, Bangi, Selangor, MalaysiaCentre for Cyber Security, Faculty of Information Science and Technology, Universiti Kebangsaan Malaysia, Bangi, Selangor, MalaysiaAs reliance on digital services grows, traditional password-based authentication methods have been increasingly scrutinized due to their susceptibility to cyber-attacks, including phishing and brute force attacks. This has led to a shift toward passwordless authentication, an approach that promises enhanced security and user experience. This paper provides a comprehensive review of passwordless authentication techniques, analysing their application in user identity verification across multiple platforms. Various methods such as biometrics, security keys, and token-based systems are explored for their efficacy in mitigating security vulnerabilities. The review highlights the advantages of passwordless authentication, including improved security, reduced user friction, and compatibility with modern identity management frameworks like FIDO2. Challenges such as usability issues, cost of deployment, and scalability are also discussed. Moreover, the paper identifies future research areas aimed at overcoming these challenges and facilitating the broad adoption of passwordless authentication in critical industries such as healthcare, finance, and public services. Future opportunities are outlined, emphasizing the need for real-world implementation, enhanced scalability, integration of AI-driven adaptive mechanisms, and innovative designs to improve user accessibility and system resilience. By consolidating existing knowledge and identifying gaps in current solutions, this study provides valuable insights for researchers and industry stakeholders seeking to enhance security through passwordless systems.https://ieeexplore.ieee.org/document/10839395/AuthenticationbiometricFIDOpasswordlessnetwork securityuser identity
spellingShingle Mohd Imran Md Yusop
Nazhatul Hafizah Kamarudin
Nur Hanis Sabrina Suhaimi
Mohammad Kamrul Hasan
Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
IEEE Access
Authentication
biometric
FIDO
passwordless
network security
user identity
title Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
title_full Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
title_fullStr Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
title_full_unstemmed Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
title_short Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity
title_sort advancing passwordless authentication a systematic review of methods challenges and future directions for secure user identity
topic Authentication
biometric
FIDO
passwordless
network security
user identity
url https://ieeexplore.ieee.org/document/10839395/
work_keys_str_mv AT mohdimranmdyusop advancingpasswordlessauthenticationasystematicreviewofmethodschallengesandfuturedirectionsforsecureuseridentity
AT nazhatulhafizahkamarudin advancingpasswordlessauthenticationasystematicreviewofmethodschallengesandfuturedirectionsforsecureuseridentity
AT nurhanissabrinasuhaimi advancingpasswordlessauthenticationasystematicreviewofmethodschallengesandfuturedirectionsforsecureuseridentity
AT mohammadkamrulhasan advancingpasswordlessauthenticationasystematicreviewofmethodschallengesandfuturedirectionsforsecureuseridentity