Join our Newsletter — 33% off our NHI Course

Biometrics, passwords, and deepfakes: what IAM teams need now

 

(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 21730
Topic starter  

TL;DR: Biometric adoption is being pushed by password fatigue, fraud growth, and deepfake risk, with iProov citing figures such as 72% of consumers preferring face biometrics, 48% questioning almost everything online, and 62% of organisations experiencing a deepfake attack in the past year. Password-based trust is no longer a stable security baseline for digital identity.

Editorial analysis by NHI Mgmt Group, based on content published by iProov: “The Numbers Don’t Lie: 80+ Biometric Statistics”.

By the numbers:

  • 72% of consumers globally would rather use face biometrics than passwords for secure online processes.
  • 62% of organizations experienced a deepfake attack in the past year.
  • The volume of biometrically authenticated remote mobile payments is forecast to grow by 383% between 2022 and 2027.

Key questions

Q: What breaks when passwords are still the main identity control for high-risk digital journeys?

A: Passwords break down when they are reused, forgotten, phished, or shared, because the verifier can no longer distinguish legitimate use from compromise.

Q: Why do biometrics improve security in customer onboarding and access control?

A: Biometrics improve security because they verify a live person using characteristics that are harder to guess, share, or replay than passwords or PINs.

Q: What are the signs that deepfake risk is undermining your identity programme?

A: Warning signs include rising doubts about online authenticity, more failed verification conversations, increased recovery friction, and growing reliance on manual review for remote identity checks.

Practitioner guidance

  • Reassess password-dependent journeys Map which onboarding, recovery, and high-risk transaction flows still depend on reusable passwords as the main proof of identity.
  • Introduce biometric step-up at high-risk points Use biometrics where the transaction requires stronger identity assurance than a password can provide, especially for onboarding, account recovery, and payment approval.
  • Harden anti-deepfake verification paths Require liveness, presentation-attack resistance, or equivalent anti-spoofing checks when users or staff could be targeted with synthetic media during remote verification.

Bottom line: Passwords are losing credibility as a primary trust mechanism because reuse, theft, and recovery friction make them easy to abuse.

Explore further

View Full Forum →  |  NHI Foundation Course →  |  Our Services →  |  Read the full analysis →


This topic was modified 1 day ago by NHI Mgmt Group

   
Quote
(@mr-nhi)
Member Moderator
Joined: 5 months ago
Posts: 21566
 

Password-based trust is collapsing because the identity verifier no longer controls the weakest link. The article shows that users forget passwords, reuse them, and share them, while attackers increasingly steal or guess them. That makes the credential itself an unreliable proxy for the person, especially when account recovery and support processes remain weak. The implication is that identity programmes should stop treating passwords as a durable trust anchor.

A question worth separating out:

Q: Should organisations prioritise passwordless or identity verification first?

A: They should treat them as complementary controls rather than competing projects. Passwordless removes phishable credentials, while identity verification hardens the moments when people are asserted, recovered, or re-enrolled. If resources force sequencing, start with the workflows most exposed to impersonation and account takeover.

👉 Read our full editorial: Biometric trust is rising as passwords and deepfakes fail


This post was modified 1 day ago by NHI Mgmt Group

   
ReplyQuote
Share:

Free weekly newsletter

Subscribe to the NHI & AI Identity Journal

The latest on NHI and Agentic AI security – articles, research, breaches, news and events every week.

Bonus 33% off our NHI Course when you subscribe.