NEWS

Relock in Cybernews: Phishing-Resistance for any user, with no friction

April 20252 min readRelock
Relock in Cybernews: Phishing-Resistance for any user, with no friction
Share:

Cybernews put a spotlight on Relock and the bold claim behind it: making 100% of users phishing-resistant, instantly. Rather than replacing passwords, passkeys, or MFA, Relock adds a layer of cryptography-based security that re-verifies the legitimate user in the background on every interaction — no installation, no configuration, and in most cases nothing the user ever notices.

The approach flips the logic of session tokens on its head. Instead of authenticating once and trusting a token for hours, Relock issues, verifies, and constantly renews origin-bound transient keys between browser and server. Steal a password or hijack a session, and it still won't work: attackers can't keep generating the secret keys running silently in the background.

Even if attackers manage to steal Relock keys, they won't be able to renew them and therefore the attempted attack will be inevitably detected at the next key rotation, exponentially reducing both the available window of attack and the time needed for investigation and forensics.

SOURCERead the full feature on Cybernews.