frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•10mo ago

Comments

palata•10mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Show HN: Dilly Labs – structured vendor selection for banks and credit unions

https://www.dillylabs.com
1•reallykanishka•2m ago•0 comments

Do political social media ads influence the outcome of elections?

https://phys.org/news/2026-03-political-social-media-ads-outcome.html
1•pseudolus•3m ago•0 comments

What if California is the most regressive state in America?

https://maxmautner.com/2026/03/09/california-regressive.html
1•mslate•7m ago•0 comments

A Nix Flake Using Literate Programming with Org Mode

https://github.com/natsukium/dotfiles
1•rrvsh•8m ago•0 comments

Show HN: I turned my Claude Max subscription into a 24/7 AI company

https://github.com/Ramsbaby/claude-discord-bridge
1•ramsbaby•13m ago•0 comments

Show HN: CEL v0.2 Pro – cryptographic black box recorder for AI systems (Python)

https://github.com/GhurtSky-GR13/colchis-log
1•GhurtSky•13m ago•0 comments

Lightweight Linux flow data collector

https://github.com/stepbrobd/rfm
1•StepBroBD•13m ago•0 comments

SignalFarm – a web app for prompt-driven song mixing

https://signalfarm.io/
1•ronpastore•14m ago•0 comments

Show HN: Extract User Intent from Prompts to Understand Usage and Cost

https://sereleum.vercel.app/
1•d41dev•17m ago•0 comments

Bill Gurley on AI bubble: A bunch of people got rich quick and a reset is coming

https://www.cnbc.com/2026/03/16/bill-gurley-ai-bubble-get-rich-quick.html
3•ericlmtn•18m ago•1 comments

Ask HN: Why does solving problems via drawing/diagrams work?

1•dvrp•21m ago•2 comments

Unflat deposit euros, earn 4-7% APY via DeFi lending, withdraw anytime

https://www.unflat.finance/
2•AlePra00•24m ago•0 comments

Keyword research and topical maps with AI

https://htmldrops.com/topical-map
1•memelore•25m ago•0 comments

US SEC preparing to scrap quarterly reporting requirement

https://www.reuters.com/business/finance/us-sec-preparing-eliminate-quarterly-reporting-requireme...
55•djoldman•29m ago•25 comments

Elon Musk's xAI sued for turning three girls' real photos into AI CSAM

https://arstechnica.com/tech-policy/2026/03/elon-musks-xai-sued-for-turning-three-girls-real-phot...
7•nobody9999•33m ago•1 comments

I built a clip-on muscle sensor so personal trainers can show clients progress

https://inara.technology
1•inaratechnology•35m ago•0 comments

Context Hub gives agents curated, versioned docs

https://github.com/andrewyng/context-hub
1•thunderbong•35m ago•0 comments

Teens sue xAI over Grok's pornographic images of them

https://www.bbc.com/news/articles/cgk2lzmm22eo
23•1659447091•36m ago•1 comments

Show HN: ssh.bot – Controlled SSH Access for AI Agents

https://ssh.bot
1•lobovkin•37m ago•1 comments

Show HN: Couplecore.me – Dead-simple custom couple landing pages

https://couplecore.me
1•andresribeiro•38m ago•0 comments

Show HN: Billing software built for expert witnesses

https://myexpertpractice.com
1•watsoft•42m ago•1 comments

Native PCVR Running on macOS

https://twitter.com/cyannick/status/2033602617339789495
1•LorenDB•43m ago•2 comments

Islamvy – I built this when my dreams wouldn't stop and I felt alone

https://apps.apple.com/ae/app/islamvy/id6759146306
1•myusufuysal•43m ago•0 comments

Short-term survival of tardigrades in Martian regolith simulants

https://www.cambridge.org/core/journals/international-journal-of-astrobiology/article/shortterm-s...
1•PaulHoule•45m ago•0 comments

FCR: Single-Slot Confirmation for Ethereum

https://fastconfirm.it
1•bpierre•45m ago•0 comments

Iran earns oil windfall as US turns blind eye

https://www.ft.com/content/35e815ef-46f3-4169-a39d-cc6bafdfbc1c
2•JumpCrisscross•47m ago•0 comments

Stream0, the messaging layer for AI agents. HTTP-native, event-driven

https://github.com/risingwavelabs/stream0
1•jinqueeny•48m ago•0 comments

Reasons to be pessimistic (and optimistic) on the future of biosecurity

https://www.owlposting.com/p/reasons-to-be-pessimistic-and-optimistic
1•paulpauper•48m ago•0 comments

How a Deep Learning Library Enables Learning

https://www.henrypan.com/blog/2026-03-14-how-deep-learning-library-enables-learning/
1•megadragon9•51m ago•0 comments

How Much Cognitive Damage Does a Phone Notification Do?

https://carlhendrick.substack.com/p/how-much-cognitive-damage-does-a
1•wilsonjholmes•51m ago•0 comments