For a while, I've been working with some other developers on improving passkey support in Linux. Here are my thoughts on what the road to a secure native API for interacting with passkeys. We'll need TPM support, measured boot, a virtual TEE, sandboxing kernel modules and more.
Sounds intriguing? Read here: