Besides FIDO2, which method class is commonly treated as phishing-resistant for privileged access scenarios?
Select an answer to reveal the explanation.
Short Explanation and Infographic
Phishing-resistant usually means FIDO2 or certificate-based — not SMS/email theater.
Full explanation below image
Full Explanation
Correct Answer — A
Phishing-resistant methods include FIDO2 security keys and certificate-based authentication patterns resistant to classic phishing of secrets.
Why B is wrong: SMS is phishable/interceptable.
Why C is wrong: Email OTP is not phishing-resistant.
Why D is wrong: Security questions are weak.
Exam tip: Phishing-resistant examples → FIDO2, CBA.