frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•11mo ago

Comments

palata•11mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Adventures in Cellular Location Services

https://nickvsnetworking.com/somebodys-watching-me-adventures-in-cellular-locating/
1•birdculture•2m ago•0 comments

Infrastructure Has an Entropy Problem

https://www.planetform.io/blog/infrastructure-entropy-problem
1•rtwo_infra•5m ago•0 comments

Reason – break screen addiction using AI

https://reason-app.com/
1•yeetosaurusrex•7m ago•1 comments

A Guide to vim.pack (Neovim built-in plugin manager)

https://echasnovski.com/blog/2026-03-13-a-guide-to-vim-pack.html
1•whereistejas•13m ago•0 comments

Player Piano (Novel)

https://en.wikipedia.org/wiki/Player_Piano_(novel)
2•otras•15m ago•0 comments

Telecheck and Tyms Past

https://computer.rip/2026-03-29-telecheck-and-tyms-past.html
1•pinewurst•17m ago•0 comments

Autism study is my life's work. The spectrum has lost all meaning

https://www.thetimes.com/uk/healthcare/article/autism-is-my-lifes-work-the-spectrum-has-become-me...
1•davikr•21m ago•0 comments

Distressed-debt funds target priv credit downturn as 'best opportunity' since 08

https://www.ft.com/content/8c3514be-8c7b-4d13-a59a-dd8a23fb8c40
1•alephnerd•22m ago•0 comments

Israel suspends battalion assaulting, detaining CNN crew in West Bank

https://www.cnn.com/2026/03/29/middleeast/idf-suspends-battalion-assaulting-cnn-crew-in-west-bank...
3•mememememememo•25m ago•0 comments

The Corvette E-Ray Is Dead, but Grand Sport X Picks Up Where It Left Off

https://www.thedrive.com/news/the-corvette-e-ray-is-already-dead-but-the-grand-sport-x-picks-up-w...
1•PaulHoule•27m ago•0 comments

AI Tokens Are Mana

https://www.proofofconcept.pub/p/ai-tokens-are-mana
4•herbertl•28m ago•0 comments

The Macintosh changed computers forever

https://www.theverge.com/podcast/903068/macintosh-1984-version-history
2•tambourine_man•30m ago•0 comments

AI Changed Chess, Grandmasters Now Win with Unpredictable Moves

https://www.bloomberg.com/news/articles/2026-03-27/ai-changed-chess-grandmasters-now-win-with-unp...
2•Amorymeltzer•30m ago•0 comments

The Strait of Hormuz Oil Shock Is Now Heading West

https://www.bloomberg.com/graphics/2026-iran-war-hormuz-closure-oil-shock
4•petethomas•35m ago•7 comments

Effect: The missing standard library for TypeScript

https://effect.website/
1•modinfo•36m ago•0 comments

WM Bench: A Benchmark for Cognitive Intelligence in World Models

https://huggingface.co/blog/FINAL-Bench/world-model
1•seawolf2357•36m ago•0 comments

Why a 98-year-old federal judge is asking the Supreme Court for her job back

https://www.npr.org/2026/03/29/nx-s1-5752172/oldest-federal-judge-us-supreme-court
2•geox•39m ago•0 comments

Navigating AI: Critical Thinking in the Age of LLMs

https://mcuoneclipse.com/2025/12/31/navigating-ai-critical-thinking-in-the-age-of-llms/
1•vinhnx•41m ago•0 comments

AI Hot Takes from a Platform Engineer / SRE

https://alienchow.dev/post/ai_takeaways_mar_2026/
1•vinhnx•42m ago•0 comments

Bluesky leans into AI with Attie, an app for building custom feeds

https://techcrunch.com/2026/03/28/bluesky-leans-into-ai-with-attie-an-app-for-building-custom-feeds/
2•enos_feedler•43m ago•0 comments

Terminal UI for WireGuard and OpenVPN with real-time telemetry and leak guarding

https://github.com/Harry-kp/vortix
1•neiesc•47m ago•1 comments

AI agents can safely browse

https://pypi.org/project/safebrowse-client/
1•robaka•47m ago•0 comments

Bluesky's next product is an AI assistant that helps build social media feeds

https://www.engadget.com/ai/blueskys-next-product-is-an-ai-assistant-that-helps-build-custom-soci...
1•SanjayMehta•50m ago•0 comments

Bitter Lesson Engineering

https://danielmiessler.com/blog/bitter-lesson-engineering
2•vinhnx•51m ago•0 comments

US will reportedly allow Russian oil tanker to reach Cuba amid blockade

https://www.theguardian.com/us-news/2026/mar/29/us-russian-oil-tanker-cuba-blockade
1•MilnerRoute•55m ago•0 comments

I Saw Something New in San Francisco

https://www.nytimes.com/2026/03/29/opinion/ai-claude-chatgpt-gemini-mcluhan.html
2•zacharyozer•58m ago•0 comments

iPhone Mirroring is not available in the EU, so I built my own

https://twitter.com/alexintosh/status/2038317511054172208
1•alexintosh•58m ago•1 comments

I built a free offline productivity app

https://apps.apple.com/us/app/gluon-todo-project-planner/id6758938759
1•cothi•58m ago•0 comments

The Pirate Bay's Oldest Torrent Turned 22

https://torrentfreak.com/the-pirate-bays-oldest-torrent-turned-22/
2•nixass•1h ago•0 comments

Show HN: Manifold – generate CLI and MCP surfaces from one .NET operation

https://github.com/Garume/Manifold
1•garume•1h ago•0 comments