frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•11mo ago

Comments

palata•11mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

ChuvAKA – Encrypted P2P Identityless chat and stream webapp

https://chuvaka.com
1•DoLzR•1m ago•1 comments

Anthropic's Restraint Is a Terrifying Warning Sign

https://www.nytimes.com/2026/04/07/opinion/anthropic-ai-claude-mythos.html
2•jaredwiener•1m ago•0 comments

Jim Whittaker, first American to summit Everest, dies at 97

https://www.seattletimes.com/life/outdoors/jim-whittaker-wa-mountaineer-who-was-first-american-to...
1•carabiner•1m ago•0 comments

How Artemis II is beaming back video from the moon with a laser system

https://www.scientificamerican.com/article/nasas-artemis-ii-laser-communications-system-is-beamin...
2•thinkingemote•2m ago•0 comments

PCIe over Fiber with SFP Modules and Bonus PCIe Analyzer

https://www.youtube.com/watch?v=XaDa9bBucEI
3•tnt246•2m ago•0 comments

I created a network-invisible OpenClaw mesh orchestration app

https://github.com/cezarpena/vsm-cell/
3•cezarpena•4m ago•1 comments

Little Snitch, the macOS network tool, is now available on Linux

https://www.omgubuntu.co.uk/2026/04/little-snitch-linux
4•bernd289•8m ago•0 comments

Quad9 Enables DNSSEC on All Service Endpoints

https://quad9.net/news/blog/quad9-enables-dnssec-on-all-service-endpoints/
3•bernd289•10m ago•0 comments

The New York Times may have found Bitcoin founder Satoshi Nakamoto

https://finance.yahoo.com/markets/crypto/article/the-new-york-times-may-have-found-bitcoin-founde...
2•MarlonPro•11m ago•3 comments

The Great Nix Flake Check

https://goldstein.lol/posts/great-nix-flake-check/
4•birdculture•13m ago•0 comments

Free Google Workspace Account Falsely Accused of Commercial Use

1•Apreche•14m ago•0 comments

I still build apps for myself

https://blog.kulman.sk/why-i-still-build-ios-apps/
3•mvac•14m ago•0 comments

Kg – local knowledge graph memory for AI assistants

https://github.com/nnar1o/kg
2•nnar•14m ago•1 comments

Iran Tightens Its Grip on Hormuz Despite Cease-Fire

https://www.wsj.com/world/middle-east/iran-tightens-its-grip-on-hormuz-despite-cease-fire-5027521f
5•ewoodrich•15m ago•0 comments

Meta unveils first AI model from costly superintelligence team

https://www.msn.com/en-us/news/technology/meta-unveils-first-ai-model-from-costly-superintelligen...
4•billybuckwheat•16m ago•0 comments

PiTorch: ML on Baremetal Raspberry Pis

https://masonjwang.com/projects/pitorch
1•petewarden•16m ago•0 comments

Show HN: LLM-context-base – Git template for LLM-powered personal wikis

https://github.com/asakin/llm-context-base
2•asakin•17m ago•1 comments

PegaProx: Centralized Logging for Proxmox Clusters

https://gyptazy.com/blog/centralized-syslog-for-proxmox-nodes-with-pegaprox/
2•HeyMeco•18m ago•0 comments

Show HN: PrettyMux, a Linux terminal for multitask workflows based on Ghostty

https://prettymux.com/
2•patrickaljord•21m ago•0 comments

How to Build a LLM from Scratch with Mary Shelley's "Frankenstein"

https://ordinaryintelligence.substack.com/p/how-to-build-a-llm-from-scratch
1•mldev_exe•22m ago•0 comments

Consciousness has a number. We derived it

https://medium.com/@maximus.veres/consciousness-has-a-number-we-derived-it-3c11d4facc61
2•old8man•23m ago•0 comments

Optimal Strategy for Connect 4

https://2swap.github.io/WeakC4/explanation/
2•marvinborner•28m ago•1 comments

Subvert – The Collectively Owned Music Marketplace

https://subvert.fm/
3•vectordust•29m ago•0 comments

Nuclear brinkmanship usually works. It's also dangerous

https://www.natesilver.net/p/nuclear-brinkmanship-usually-works
2•rurp•32m ago•0 comments

I built a deployment script shrine with Madoka Magica aesthetics

https://lets.deploy.re
1•DanielHall•33m ago•1 comments

How dangerous is Mythos, Anthropic's new AI model?

https://www.economist.com/business/2026/04/08/how-dangerous-is-mythos-anthropics-new-ai-model
2•jncraton•33m ago•0 comments

Israel kills 254 in Lebanon after US-Iran agree ceasefire

https://www.aljazeera.com/news/liveblog/2026/4/8/iran-war-live-trump-announces-truce-tehran-agree...
6•alexander2002•37m ago•3 comments

Linux gamers didn't do anything wrong, but they might pay for Windows piracy

https://www.xda-developers.com/linux-gamers-didnt-do-wrong-pay-windows-piracy/
1•speckx•37m ago•0 comments

For People with Autism, Can Restaurant Kitchens Be a Haven?

https://www.nytimes.com/2026/04/05/dining/autism-chefs-restaurants.html
1•bookofjoe•37m ago•1 comments

HappyHorse-1.0 hits #1 on Artificial Analysis video leaderboard

https://artificialanalysis.ai/video/leaderboard/text-to-video
1•informal007•37m ago•0 comments