frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•10mo ago

Comments

palata•10mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Game Modding with GenAI: A Case Study of Stardew Valley Character Maker

https://arxiv.org/abs/2507.13951
1•azhenley•6m ago•0 comments

The History of Stoner.com

https://ron.stoner.com/The_History_Of_Stoner_._com/
1•tinkelenberg•8m ago•0 comments

Wero announces the launch of its ecommerce solution in

https://epicompany.eu/media-insights/wero-announces-launch-ecommerce-in-belgium
1•absqueued•8m ago•0 comments

Building Kepler

https://www.astronomer.io/blog/building-kepler-astronomer-internal-data-assistant/
1•tayloramurphy•10m ago•0 comments

A 1,300-pound NASA spacecraft to re-enter Earth's atmosphere

https://www.bbc.com/news/articles/cd9gwdgg38vo
1•reconnecting•12m ago•0 comments

At what level of deep context engineering does AI output become human-crafted?

1•svstoyanovv•14m ago•0 comments

State of AI 2026: The $600B inference subsidy, energy bottlenecks, and labor

https://lostframe.ai/research
1•willtaubenheim•16m ago•1 comments

Tell HN: Vertical tabs has arrived (behind a flag) in Chrome stable

2•crummy•17m ago•0 comments

Ask HN: Is Starlink still being jammed in Iran?

1•Jblx2•17m ago•0 comments

RoqueOS – an OS to control your homelab (now on the Apple App Store)

https://roqueos.com.br/
1•roqueribeiro•18m ago•1 comments

SSH Is the Agent Internet

https://rolandsharp.com/ssh-is-the-agent-internet/
1•epscylonb•24m ago•0 comments

Show HN: Mumpix – Local-first AI infrastructure and $1B developer grant

https://mumpixdb.com/mumpix-billion-program.html#claim
1•carreraellla•24m ago•0 comments

MPs give ministers powers to restrict Internet

https://www.openrightsgroup.org/press-releases/mps-give-ministers-powers-to-restrict-entire-inter...
2•Jigsy•27m ago•0 comments

Amazon Cognito and FusionAuth Comparison

https://fusionauth.io/blog/amazon-cognito-and-fusionauth-comparison
1•mooreds•28m ago•0 comments

Updating yes(1) to run at 175GiB/s

https://github.com/coreutils/coreutils/commit/2b1c059e6
1•pixelbeat__•29m ago•0 comments

Log4j – Addressing AI-slop in security reports

https://github.com/apache/logging-log4j2/discussions/4052
1•tchalla•30m ago•0 comments

Mesa

https://docs.mesa.dev/content/getting-started/introduction
2•handfuloflight•31m ago•0 comments

Bay Area man gets 11 years for $1B solar Ponzi scheme

https://www.sfgate.com/bayarea/article/bay-area-ponzi-scheme-22063096.php
3•randycupertino•33m ago•0 comments

The State of Video Gaming in 2026 (Early Access Edition)

https://www.matthewball.co/all/presentation-the-state-of-video-gaming-in-2026
1•doener•35m ago•1 comments

Think Twice Before Buying or Using Meta's Ray-Bans

https://www.eff.org/deeplinks/2026/03/think-twice-buying-or-using-metas-ray-bans
5•hn_acker•39m ago•1 comments

Anthropic gives lesson in AI revenue hallucination

https://www.reuters.com/commentary/breakingviews/anthropic-gives-lesson-ai-revenue-hallucination-...
1•latinodev•43m ago•2 comments

Production query plans without production data

https://boringsql.com/posts/portable-stats/
2•birdculture•47m ago•0 comments

Build a deep researcher and learn DSPy Signatures and Modules

https://www.cmpnd.ai/blog/learn-dspy-deep-research.html
2•dbreunig•49m ago•0 comments

AI Is Making Libraries Obsolete

https://maho.dev/2026/03/ai-is-making-libraries-obsolete/
1•mahoivan•49m ago•1 comments

Singularity Is Around?

1•essekar•50m ago•1 comments

Do YC companies all use the top sales tools?

1•justin_cheu•52m ago•0 comments

Deleted Tweet from Energy Secretary Sends Oil Markets on Another Wild Ride

https://www.wsj.com/finance/stocks/deleted-tweet-from-energy-secretary-sends-oil-markets-on-anoth...
1•petethomas•52m ago•0 comments

Evolving the Node.js Release Schedule

https://nodejs.org/en/blog/announcements/evolving-the-nodejs-release-schedule
3•suresh70•53m ago•0 comments

DOGE employee stole Social Security data and put it on a thumb drive

https://techcrunch.com/2026/03/10/doge-employee-stole-social-security-data-and-put-it-on-a-thumb-...
14•elsewhen•56m ago•1 comments

Claude Opus 4.6 generated a YouTube poop video with a single prompt

https://twitter.com/josephdviviano/status/2031196768424132881
1•dokdev•57m ago•2 comments