
TikTok and Visa launch debit card to speed payouts to UK creators
TikTok and Visa unveil a debit card for UK creators to access earnings faster.

UK cyber chiefs recommend replacing passwords with passkeys for better online security. The National Cyber Security Centre is advocating this shift to enhance account protection.
People in the UK have been urged to start ditching passwords in favour of passkeys, where available, as a way to secure their accounts online.
Passwords have long been the default way many people set up and log in to accounts for digital services.
However, the National Cyber Security Centre (NCSC) said on Thursday it was "overhauling decades of security practice" to instead recommend passkeys as the most secure option.
Platforms including Apple, Google and X already let people use them instead of passwords, but what are passkeys, and how do they work?
The advice comes after years of warning people against using simple codes which can easily be guessed, like "123456", as well as pet names, as passwords.
Against a backdrop of rising data breaches, the NCSC has also repeated warnings against reusing the same password for different sites.
Password managers and multi-factor authentication (MFA) methods have grown in usage as a way to help strengthen and save log-in credentials.
The NCSC believes passkeys may be less vulnerable to hacks and human error, but some experts say they are still "not a silver bullet".
Like passwords, passkeys are a form of authentication to make sure it is you trying to access an account.
But unlike passwords, they do not require you to remember a code or combination of letters, numbers and symbols.
Passkeys are a piece of digital information which is tied to a user's account and unique to each site or app they use.
They use cryptography to perform checks at device-level.
And they usually work alongside tech already baked into devices like smartphones, such as Face ID and Touch ID on iPhones, and Face Unlock on Google Pixel phones.
Google and iPhone-maker Apple are among operating system developers offering them as an alternative way users can sign into accounts.
According to the NCSC, passkeys can offer more protection because they are unique to each website you register to use them with, and there is no secret bit of information shared.
The NCSC's director for national resilience Jonathan Ellison called them "a user-friendly alternative which provide stronger overall resilience".
He added they could also help relieve "the headaches that remembering passwords have caused us for decades".
Passkeys are enabled by something called public key cryptography.
"Instead of you creating and remembering a shared secret, like a password, your device generates a secure key pair - one part stays on your device, and the other sits with the service you're logging into," says Daniel Card of BCS, the Chartered Institute for IT.
Passkeys are a more secure alternative to passwords, designed to simplify and enhance online account security by using cryptographic methods.
The NCSC is urging the use of passkeys to overhaul outdated security practices and reduce the risks associated with easily guessable passwords.
Platforms like Apple, Google, and X already allow users to utilize passkeys as a secure login method instead of traditional passwords.
Continuing to use passwords poses risks such as easy guessing of simple codes, leading to potential unauthorized access to accounts.

TikTok and Visa unveil a debit card for UK creators to access earnings faster.

Mojtaba Khamenei takes over as Iran's supreme leader, but leadership remains divided.

UK officials drastically revised AI datacentre carbon emissions estimates, now at 123 million tonnes over 10 years.

Israeli police cut Palestinian flag from kippah of detained academic

EU's anti-fraud office investigates Lord Mandelson for misconduct linked to Epstein.

China showcases driverless technology at the Beijing Auto Fair, with Huawei investing heavily in the future of mobility.
See every story in News — including breaking news and analysis.
The process most often involves doing what you do to unlock your device - such as using built-in biometric sensors to scan your fingerprint or face, or using a pin code.
Only the fact you have completed the check - not the information itself - is exchanged.
"These physical security keys are totally resistant to phishing attempts and can't be intercepted or stolen by remote attackers, meaning only the key holder can gain access to their accounts," says Niall McConachie, regional director at cyber-security firm Yubico.
The NCSC and many cyber experts believe passkeys may be at least as, if not more secure, than MFA methods such as pairing a strong password with checks to make sure it is you trying to log into an account on another device.
But Card notes, as others have previously, passkeys are "not a silver bullet".
Losing your device or access to it entirely can also make it tricky to configure passkeys.
The NCSC says it did not advocate switching to them in the past due to "implementation challenges" such as their slowed adoption and patchy support.
Lots of platforms still do not allow users to use passkeys instead of or as well as passwords.
But according to Fido Alliance, an industry association advancing passkeys as a way to unlock a "password-less future", the tech is now supported across all major operating systems, internet browsers and by third-party providers.
And McConachie says growing support for the passkey - including with the UK Government's adoption of them across digital services last year - shows "this isn't just a niche trend".
"Moving from passwords to password managers, app-based MFA, and now passkeys is a step change in reducing risk," Card adds.
"That's why organisations like the NCSC are backing them, and why many in the security community are already adopting them wherever they're available."
Sign up for our Tech Decoded newsletter to follow the world's top tech stories and trends. Outside the UK? Sign up here.