frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•8mo ago

Comments

palata•8mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

ICE Is Not Like the Brownshirts, the Brownshirts Identified Themselves

https://www.mcsweeneys.net/articles/ice-is-nothing-like-the-brownshirts-because-the-brownshirts-a...
2•bjourne•3m ago•0 comments

The Responsibility of Intellectuals

https://www.nybooks.com/articles/1967/02/23/a-special-supplement-the-responsibility-of-intelle/
1•andsoitis•8m ago•0 comments

US SEC: India refused to serve summons to Adani Group under Hague Convention

https://economictimes.indiatimes.com/news/company/corporate-trends/us-regulator-seeks-to-bypass-i...
2•alok-g•9m ago•1 comments

Alex Honnold completes Taipei 101 skyscraper climb without ropes or safety net

https://www.cnn.com/sport/live-news/taiwan-alex-honnold-climb-taipei-101-01-25-26-intl-hnk
8•keepamovin•11m ago•1 comments

The Bay Area Has Lost Its Soul. No Wonder Everyone's Leaving [video]

https://www.youtube.com/watch?v=9_bsaF5TTEE
1•keepamovin•14m ago•0 comments

Prototyping NixOS with FDE, tang and Podman using Claude.AI

https://claude.ai/public/artifacts/e7cdb55a-3960-4dc9-bd1a-3c73a3145fb9
1•cptnslow•14m ago•1 comments

Show HN: VM-curator – a TUI alternative to libvirt and virt-manager

https://github.com/mroboff/vm-curator
1•theYipster•16m ago•0 comments

nvidia-smi hangs indefinitely after ~66 days

https://github.com/NVIDIA/open-gpu-kernel-modules/issues/971
2•tosh•19m ago•0 comments

Kb_text_shape: Harfbuzz like single file C/C++ text shaping library

https://github.com/JimmyLefevre/kb
1•inxode•20m ago•0 comments

ADSL Works over Wet String

https://www.revk.uk/2017/12/its-official-adsl-works-over-wet-string.html
1•Tiberium•21m ago•0 comments

AI Adoption Rates by Country

https://www.visualcapitalist.com/ai-adoption-rates-by-country/
2•divbzero•24m ago•1 comments

Managing High Performers

https://twitter.com/staysaasy/status/2015026826217742509
1•thisismytest•28m ago•1 comments

The case against ultrasonic humidifiers

https://dynomight.net/humidifiers/
3•arbuge•30m ago•2 comments

Unidentified Aerial Phenomena Near Nuclear Facilities – Enigma Labs

https://enigmalabs.io/collection/a7111520-9526-4939-9a66-d225db45ba80
1•lukeplato•32m ago•0 comments

BookLore: A self-hosted, multi-user digital library

https://github.com/booklore-app/booklore
2•thunderbong•32m ago•0 comments

Second Win11 emergency out of band update to address disastrous Patch Tuesday

https://www.windowscentral.com/microsoft/windows-11/windows-11-second-emergency-out-of-band-updat...
4•speckx•35m ago•0 comments

Inside Anduril's Bolt-M Kamikaze Drone Program

https://www.twz.com/uncategorized/inside-andurils-bolt-m-kamikaze-drone-program
2•breve•38m ago•2 comments

Bluesky CEO Jay Graber: Banning under-16s won't fix social media

https://www.ft.com/content/c6980fc4-97b6-40bf-a3d0-c40c3a6cac56
3•sealeck•41m ago•1 comments

Enterprises are eyeing End-To-End AI gateways

https://llmgateway.io/blog/unified-ai-gateway
1•steebchen•42m ago•1 comments

Show HN: React-meta-SEO – Rebuilding SEO for React 19 (3KB, no providers)

https://www.npmjs.com/package/react-meta-seo
1•Hacakthon•45m ago•0 comments

Shared Garden

https://sharedgarden.io/
2•lucaspauker•47m ago•0 comments

Google's AI Detection Tool Can't Decide If Its Own AI Doctored Photo of Activist

https://theintercept.com/2026/01/24/googles-ai-detection-white-house-synthid-gemini/
1•Qem•51m ago•0 comments

Show HN: PicoFlow – a minimal Python workflow for LLM agents

2•shijizhi_1919•54m ago•0 comments

Temporal tissue dynamics from a spatial snapshot

https://www.nature.com/articles/s41586-025-09876-1
1•bookofjoe•55m ago•0 comments

Building a High-Performance Rotating Bloom Filter in Java

https://medium.com/@udaysagar.2177/building-a-high-performance-rotating-bloom-filter-in-java-a9e7...
2•udaysagar•1h ago•0 comments

David Patterson: Challenges and Research Directions for LLM Inference Hardware

https://arxiv.org/abs/2601.05047
2•transpute•1h ago•0 comments

CoCoRaHS – Community Collaborative Rain, Hail and Snow Network

https://www.cocorahs.org/
1•reaperducer•1h ago•0 comments

SenseCAP T1000: A Compact LoRaWAN/Meshtastic GNSS Tracker

https://wiki.seeedstudio.com/SenseCAP_T1000_tracker/Introduction/
1•Lwrless•1h ago•0 comments

OpenAI's GPT-5.2 model cites Grokipedia

https://www.engadget.com/ai/report-reveals-that-openais-gpt-52-model-cites-grokipedia-192532977.html
8•bhouston•1h ago•3 comments

Show HN: I built a quote search engine via "vibe coding" as a junior dev

https://www.aimoviequotes.com
1•mosbyllc•1h ago•0 comments