WebBluetoothCG/registries

Blacklisting FIDO (U2F) Authenticators

Closed this issue · 0 comments

leshi commented

Hi there,

Please blacklist the FIDO U2F Service: 0xFFFD. If this service is not blacklisted, the phishing protection offered by FIDO U2F devices will be compromised.

Bluetooth ORG's 16-bit allocated uuids for SDOs: https://www.bluetooth.com/specifications/assigned-numbers/16-bit-uuids-for-sdos

Specification for those that might be interested: https://fidoalliance.org/specs/fido-u2f-bt-protocol-id-20150514.pdf