In conjunction with

Hands-Free Two-Factor Authentication Using Registered Device Proximity

Blue2Factor sells two-factor authentication built around device proximity rather than typed codes. Its argument is that the friction of conventional 2FA, reaching for a phone and copying a six-digit code at every login, is what pushes users and administrators to weaken it, and that a code a person can be talked into sharing is the weak link in the first place. Buyers are organizations already running an identity provider that want stronger second-factor coverage without adding a step to every sign-in.

The service registers a user's devices, then authenticates automatically on a known device when another registered device is detected nearby, which the company describes as hands-free sign-in. Underneath, authentication relies on public key cryptography, biometrics, and passkeys, so there is no shared secret or one-time code for an attacker to relay through a proxy page. That closes off second-factor phishing, where a victim is induced to hand a valid code to an attacker-controlled site.

Integration is through SAML against an existing identity provider such as Google Workspace or Active Directory, which lets Blue2Factor supply both single sign-on and the second factor to applications already wired for federated login. The company describes implementation as a few lines of code and ships a companion mobile app for device registration. It positions itself as a lower-cost alternative to established 2FA vendors while also removing the per-login interruption that drives support tickets.

Market Segment:

Identity Security

Categories:

IAM - Authentication