{"id":20910,"date":"2026-08-04T13:02:34","date_gmt":"2026-08-04T13:02:34","guid":{"rendered":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/"},"modified":"2026-08-04T13:02:34","modified_gmt":"2026-08-04T13:02:34","slug":"malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key","status":"publish","type":"post","link":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/","title":{"rendered":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key"},"content":{"rendered":"\n<p>Gli attacchi Pass-ta-key possono consentire al malware di abusare di Google Password Manager e dirottare le passkey memorizzate tramite Chrome su Windows. Gli attacchi non forzano la crittografia delle passkey, ma sfruttano debolezze nella registrazione del dispositivo, nel ripristino, nella sincronizzazione e nei controlli di attendibilit\u00e0.<\/p>\n\n\n\n<p>Unit 42 di <a href=\"https:\/\/unit42.paloaltonetworks.com\/passwordless-authentication-security-risks\/\" target=\"_blank\" rel=\"noopener noreferrer\">Palo Alto Networks ha scoperto tre attacchi<\/a> che riguardano le passkey sincronizzate tramite Google Password Manager. I ricercatori hanno battezzato collettivamente l\u2019insieme di queste tecniche Pass-ta-key.<\/p>\n\n\n\n<p>Tutti e tre gli attacchi presuppongono che il malware sia gi\u00e0 in esecuzione sul computer Windows della vittima. Alcune tecniche, tuttavia, funzionano senza privilegi di amministratore n\u00e9 ulteriore interazione da parte dell\u2019utente.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-malware-can-impersonate-a-trusted-windows-device\">Il malware pu\u00f2 impersonare un dispositivo Windows considerato attendibile<\/h2>\n\n\n\n<p>La prima tecnica Pass-ta-key consente al malware di impersonare un dispositivo Windows che Google ritiene gi\u00e0 attendibile.<\/p>\n\n\n\n<p>Il malware sfrutta la chiave di identit\u00e0 del dispositivo supportata dal TPM di Chrome per richiedere una risposta di autenticazione valida all\u2019autenticatore cloud di Google. L\u2019operazione pu\u00f2 avvenire senza dati biometrici, PIN, approvazione dell\u2019utente e persino senza sbloccare il computer.<\/p>\n\n\n\n<p>Google pu\u00f2 quindi restituire un\u2019asserzione passkey firmata che l\u2019aggressore pu\u00f2 utilizzare per accedere all\u2019account preso di mira.<\/p>\n\n\n\n<p>Le asserzioni passkey contengono un flag di verifica dell\u2019utente che indica se quest\u2019ultimo ha approvato l\u2019accesso tramite PIN o controllo biometrico. I siti web possono bloccare questo attacco quando richiedono la verifica dell\u2019utente e convalidano correttamente quel flag.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-silver-pass-ta-key-adds-an-attacker-controlled-key\">Silver Pass-ta-key aggiunge una chiave controllata dall\u2019aggressore<\/h3>\n\n\n\n<p>La seconda tecnica, chiamata Silver Pass-ta-key, consente agli aggressori di registrare la propria chiave di verifica presso l\u2019autenticatore cloud di Google.<\/p>\n\n\n\n<p>Il malware rimuove o invalida innanzitutto lo stato passkey esistente di Chrome, costringendo il browser a ripetere il processo di registrazione del dispositivo. Durante la registrazione, l\u2019aggressore invia una chiave di verifica sotto il proprio controllo.<\/p>\n\n\n\n<p>Secondo Unit 42, il sistema di Google non ha verificato se la chiave sostitutiva provenisse da hardware attendibile.<\/p>\n\n\n\n<p>Una volta che Google accetta la chiave malevola, gli aggressori possono utilizzarla come prova che la vittima ha approvato una richiesta di autenticazione. Questa tecnica pu\u00f2 aggirare i servizi che richiedono correttamente la verifica tramite PIN o dati biometrici.<\/p>\n\n\n\n<p>L\u2019aggressore pu\u00f2 anche autenticarsi in un secondo momento da un altro dispositivo. Non ha pi\u00f9 bisogno di un accesso continuo al computer compromesso originale.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-golden-pass-ta-key-exposes-the-passkey-master-secret\">Golden Pass-ta-key espone il segreto principale delle passkey<\/h3>\n\n\n\n<p>La tecnica pi\u00f9 grave, Golden Pass-ta-key, prende di mira il segreto del dominio di sicurezza utilizzato per crittografare tutte le passkey sincronizzate tramite Google Password Manager.<\/p>\n\n\n\n<p>Google fornisce temporaneamente questo segreto principale a Chrome durante la registrazione del dispositivo o il ripristino dell\u2019account. Unit 42 ha inizialmente trovato il segreto memorizzato in chiaro all\u2019interno dei registri FIDO di Chrome.<\/p>\n\n\n\n<p>Google ha rimosso il valore da tali registri dopo che i ricercatori hanno segnalato il problema.<\/p>\n\n\n\n<p>Tuttavia, Unit 42 afferma che il segreto appare ancora temporaneamente nella memoria di processo di Chrome. Il malware pu\u00f2 attivare la nuova registrazione del dispositivo e cercare nella memoria del browser la chiave di crittografia.<\/p>\n\n\n\n<p>Dopo aver estratto il segreto, gli aggressori possono decrittografare i record delle passkey sincronizzate e accedere alle loro chiavi private. Possono quindi trasferire tali chiavi su un altro dispositivo e impersonare la vittima.<\/p>\n\n\n\n<p>Il segreto rubato pu\u00f2 anche decrittografare le passkey aggiunte all\u2019account in un secondo momento. I ricercatori hanno riferito che l\u2019implementazione di Google al momento non offre un modo per ruotare o revocare il segreto del dominio di sicurezza.<\/p>\n\n\n\n<p>Ci\u00f2 significa che gli aggressori potrebbero mantenere l\u2019accesso sia alle passkey sincronizzate esistenti che a quelle future dopo aver rubato la chiave.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"h-passkeys-still-depend-on-device-security\">Le passkey dipendono ancora dalla sicurezza del dispositivo<\/h3>\n\n\n\n<p>Unit 42 ha segnalato privatamente a Google le debolezze di Google Password Manager prima di pubblicare la propria ricerca. Google non aveva confermato pubblicamente di aver risolto completamente ogni tecnica descritta.<\/p>\n\n\n\n<p>La ricerca mostra che le passkey possono ancora diventare vulnerabili quando il malware compromette il dispositivo che le gestisce. Anche se Microsoft ha spinto gli utenti verso le passkey, l\u2019autenticazione senza password non pu\u00f2 proteggere completamente gli account quando gli aggressori controllano il browser o il sistema operativo.<\/p>\n\n\n\n<p>I siti web dovrebbero richiedere la verifica dell\u2019utente e convalidare il relativo flag passkey. I gestori di credenziali dovrebbero inoltre confermare che le chiavi del dispositivo appena registrate provengano da hardware attendibile.<\/p>\n\n\n\n<p>Gli sviluppatori dovrebbero rafforzare i processi di ripristino e nuova registrazione del dispositivo, limitando al contempo il tempo in cui le chiavi di crittografia sensibili rimangono disponibili nella memoria del browser.<\/p>\n\n\n\n<p>Gli utenti dovrebbero continuare a installare gli aggiornamenti di sicurezza, evitare download sospetti e proteggere i propri computer dal malware. Google ha anche introdotto il ripristino dell\u2019account tramite video selfie con protezioni contro i deepfake, nell\u2019ambito dei suoi pi\u00f9 ampi sforzi per la sicurezza degli account.<\/p>\n\n\n\n<p>La sicurezza del dispositivo resta particolarmente importante quando si utilizzano reti pubbliche. <a href=\"https:\/\/windowsreport.com\/it\/microsoft-svela-una-campagna-malware-globale-su-wi-fi-degli-hotel\/\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft ha recentemente scoperto una campagna malware globale sul Wi-Fi degli hotel<\/a> che prendeva di mira i viaggiatori tramite portali captivi compromessi.<\/p>\n\n\n\n<p>Via <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/new-pass-ta-key-attacks-let-malware-hijack-google-synced-passkeys\/\" target=\"_blank\" rel=\"noopener noreferrer\">BleepingComputer<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Gli attacchi Pass-ta-key possono consentire al malware di abusare di Google Password Manager e dirottare le passkey memorizzate tramite Chrome su Windows. Gli attacchi non forzano la crittografia delle passkey, ma sfruttano debolezze nella registrazione del dispositivo, nel ripristino, nella sincronizzazione e nei controlli di attendibilit\u00e0. Unit 42 di Palo Alto Networks ha scoperto tre [&hellip;]<\/p>\n","protected":false},"author":49,"featured_media":20911,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_enabled_clarity":"","footnotes":""},"categories":[909],"tags":[],"work":[],"class_list":["post-20910","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-guide"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v28.1 (Yoast SEO v28.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key<\/title>\n<meta name=\"description\" content=\"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/\" \/>\n<meta property=\"og:locale\" content=\"it_IT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key\" \/>\n<meta property=\"og:description\" content=\"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/\" \/>\n<meta property=\"og:site_name\" content=\"WindowsReport IT (Italien)\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/WindowsReport\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-04T13:02:34+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1280\" \/>\n\t<meta property=\"og:image:height\" content=\"801\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Milan Stanojevic\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@MilanStanojev17\" \/>\n<meta name=\"twitter:site\" content=\"@WindowsRep\" \/>\n<meta name=\"twitter:label1\" content=\"Scritto da\" \/>\n\t<meta name=\"twitter:data1\" content=\"Milan Stanojevic\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tempo di lettura stimato\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minuti\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/\"},\"author\":{\"name\":\"Milan Stanojevic\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#\\\/schema\\\/person\\\/e3910b02e4592db47a0eb303765a3a25\"},\"headline\":\"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key\",\"datePublished\":\"2026-08-04T13:02:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/\"},\"wordCount\":845,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2026\\\/08\\\/google-passkey-malware.jpg\",\"articleSection\":[\"Guide\"],\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#respond\"]}],\"copyrightYear\":\"2026\",\"copyrightHolder\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/#organization\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/\",\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/\",\"name\":\"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2026\\\/08\\\/google-passkey-malware.jpg\",\"datePublished\":\"2026-08-04T13:02:34+00:00\",\"description\":\"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#breadcrumb\"},\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#primaryimage\",\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2026\\\/08\\\/google-passkey-malware.jpg\",\"contentUrl\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2026\\\/08\\\/google-passkey-malware.jpg\",\"width\":1280,\"height\":801},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Guide\",\"item\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/category\\\/guide\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#website\",\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/\",\"name\":\"WindowsReport IT (Italien)\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"it-IT\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#organization\",\"name\":\"WindowsReport IT (Italien)\",\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2024\\\/01\\\/wr-logo-default.png\",\"contentUrl\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/wp-content\\\/uploads\\\/sites\\\/7\\\/2024\\\/01\\\/wr-logo-default.png\",\"width\":214,\"height\":35,\"caption\":\"WindowsReport IT (Italien)\"},\"image\":{\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/WindowsReport\",\"https:\\\/\\\/x.com\\\/WindowsRep\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/#\\\/schema\\\/person\\\/e3910b02e4592db47a0eb303765a3a25\",\"name\":\"Milan Stanojevic\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g\",\"caption\":\"Milan Stanojevic\"},\"description\":\"Milan has been enthusiastic about technology ever since his childhood days, and this led him to take interest in all PC-related technologies. He's a PC enthusiast and he spends most of his time learning about computers and technology. Before joining WindowsReport, he worked as a front-end web developer. Now, he's one of the Troubleshooting experts in our worldwide team, specializing in Windows errors &amp; software issues.\",\"sameAs\":[\"https:\\\/\\\/x.com\\\/MilanStanojev17\"],\"url\":\"https:\\\/\\\/windowsreport.com\\\/it\\\/author\\\/milan\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key","description":"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/","og_locale":"it_IT","og_type":"article","og_title":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key","og_description":"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.","og_url":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/","og_site_name":"WindowsReport IT (Italien)","article_publisher":"https:\/\/www.facebook.com\/WindowsReport","article_published_time":"2026-08-04T13:02:34+00:00","og_image":[{"width":1280,"height":801,"url":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg","type":"image\/jpeg"}],"author":"Milan Stanojevic","twitter_card":"summary_large_image","twitter_creator":"@MilanStanojev17","twitter_site":"@WindowsRep","twitter_misc":{"Scritto da":"Milan Stanojevic","Tempo di lettura stimato":"4 minuti"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#article","isPartOf":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/"},"author":{"name":"Milan Stanojevic","@id":"https:\/\/windowsreport.com\/it\/#\/schema\/person\/e3910b02e4592db47a0eb303765a3a25"},"headline":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key","datePublished":"2026-08-04T13:02:34+00:00","mainEntityOfPage":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/"},"wordCount":845,"commentCount":0,"publisher":{"@id":"https:\/\/windowsreport.com\/it\/#organization"},"image":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#primaryimage"},"thumbnailUrl":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg","articleSection":["Guide"],"inLanguage":"it-IT","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#respond"]}],"copyrightYear":"2026","copyrightHolder":{"@id":"https:\/\/windowsreport.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/","url":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/","name":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key","isPartOf":{"@id":"https:\/\/windowsreport.com\/it\/#website"},"primaryImageOfPage":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#primaryimage"},"image":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#primaryimage"},"thumbnailUrl":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg","datePublished":"2026-08-04T13:02:34+00:00","description":"Gli attacchi Pass-ta-key consentono al malware di dirottare i passkey sincronizzati con Google sfruttando i sistemi di attendibilit\u00e0 del dispositivo, ripristino e sincronizzazione di Chrome.","breadcrumb":{"@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#breadcrumb"},"inLanguage":"it-IT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/"]}]},{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#primaryimage","url":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg","contentUrl":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2026\/08\/google-passkey-malware.jpg","width":1280,"height":801},{"@type":"BreadcrumbList","@id":"https:\/\/windowsreport.com\/it\/malware-puo-rubare-le-google-passkeys-usando-attacchi-pass-ta-key\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/windowsreport.com\/it\/"},{"@type":"ListItem","position":2,"name":"Guide","item":"https:\/\/windowsreport.com\/it\/category\/guide\/"},{"@type":"ListItem","position":3,"name":"Malware pu\u00f2 rubare le Google Passkeys usando attacchi Pass-ta-key"}]},{"@type":"WebSite","@id":"https:\/\/windowsreport.com\/it\/#website","url":"https:\/\/windowsreport.com\/it\/","name":"WindowsReport IT (Italien)","description":"","publisher":{"@id":"https:\/\/windowsreport.com\/it\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/windowsreport.com\/it\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"it-IT"},{"@type":"Organization","@id":"https:\/\/windowsreport.com\/it\/#organization","name":"WindowsReport IT (Italien)","url":"https:\/\/windowsreport.com\/it\/","logo":{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/windowsreport.com\/it\/#\/schema\/logo\/image\/","url":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2024\/01\/wr-logo-default.png","contentUrl":"https:\/\/windowsreport.com\/it\/wp-content\/uploads\/sites\/7\/2024\/01\/wr-logo-default.png","width":214,"height":35,"caption":"WindowsReport IT (Italien)"},"image":{"@id":"https:\/\/windowsreport.com\/it\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/WindowsReport","https:\/\/x.com\/WindowsRep"]},{"@type":"Person","@id":"https:\/\/windowsreport.com\/it\/#\/schema\/person\/e3910b02e4592db47a0eb303765a3a25","name":"Milan Stanojevic","image":{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/secure.gravatar.com\/avatar\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fdfb58c5f9c33b78cbac22bd664ac8335249104922392e67d69d32ee59624544?s=96&d=mm&r=g","caption":"Milan Stanojevic"},"description":"Milan has been enthusiastic about technology ever since his childhood days, and this led him to take interest in all PC-related technologies. He's a PC enthusiast and he spends most of his time learning about computers and technology. Before joining WindowsReport, he worked as a front-end web developer. Now, he's one of the Troubleshooting experts in our worldwide team, specializing in Windows errors &amp; software issues.","sameAs":["https:\/\/x.com\/MilanStanojev17"],"url":"https:\/\/windowsreport.com\/it\/author\/milan\/"}]}},"_links":{"self":[{"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/posts\/20910","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/users\/49"}],"replies":[{"embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/comments?post=20910"}],"version-history":[{"count":0,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/posts\/20910\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/media\/20911"}],"wp:attachment":[{"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/media?parent=20910"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/categories?post=20910"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/tags?post=20910"},{"taxonomy":"work","embeddable":true,"href":"https:\/\/windowsreport.com\/it\/wp-json\/wp\/v2\/work?post=20910"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}