What FIDO concept ensures that a credential registered on example.com cannot be used to authenticate on attacker.com?
-
A
User presence check
-
B
Cryptographic origin binding via the relying party ID
-
C
Certificate transparency logging
-
D
Rate limiting on authentication attempts