frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Show HN: Scroll bar scuba dude swimming as you scroll

https://scrollbuddy.com/
1•hello12343214•1m ago•0 comments

Show HN: New Causal Impact Library

https://github.com/YuminosukeSato/bsts-causalimpact
1•djwjjtw•1m ago•0 comments

Ask HN: How do you handle breaking changes from third-party APIs in production?

1•kriish2205•2m ago•0 comments

Sycophantic AI decreases prosocial intentions and promotes dependence

https://www.science.org/doi/10.1126/science.aec8352
1•noleary•3m ago•0 comments

Ordinary Americans Take on Mark Zuckerberg and Big Tech in Jury Trials

https://www.thebignewsletter.com/p/normal-americans-say-enough-to-big
1•connor11528•4m ago•0 comments

The Innovation Edge: How Large Companies Lose It and How to Get It Back

https://books.forbes.com/books/the-innovation-edge/
2•teleforce•4m ago•0 comments

Claw Fact Bus: "Facts, Not Commands" for AI Agent Coordination

https://github.com/YangKGcsdms/claw_fact_bus/blob/master/protocol/SPEC.md
1•CarterYang•8m ago•0 comments

From shine to decline: Degradation of over 1M solar PV systems in Germany

https://www.sciencedirect.com/science/article/pii/S0140988326001611
2•toomuchtodo•12m ago•0 comments

Anthropic considers IPO as soon as October

https://www.theedgesingapore.com/news/artificial-intelligence/claude-ai-maker-anthropic-considers...
4•doppp•12m ago•0 comments

Slashing agent token costs by 98% with RFC 9457-compliant error responses

https://blog.cloudflare.com/rfc-9457-agent-error-pages/
4•cezarvil•18m ago•0 comments

The decline and fall of the Roman currency empire

https://www.economist.com/finance-and-economics/2026/03/26/the-decline-and-fall-of-the-roman-curr...
2•andsoitis•18m ago•0 comments

Database Performance Bottlenecks: N+1 Queries, Missing Indexes, Connection Pools

https://howtocenterdiv.com/beyond-the-div/your-database-is-the-bottleneck-not-your-code
3•imkyssa•19m ago•0 comments

Show HN: AI career guides for software career family

https://www.ai-proof-careers.com/industry/software-technology
1•yoyothesheep•21m ago•0 comments

Trump's signature will appear on US dollars

https://www.nytimes.com/2026/03/26/us/politics/trump-signature-us-dollars.html
2•mizzao•23m ago•1 comments

The Failure of the Thermodynamics of Computation(2010)

https://sites.pitt.edu/~jdnorton/Goodies/Idealization/index.html
2•nill0•26m ago•0 comments

Limitations of Serial Cloning in Mammals

https://www.nature.com/articles/s41467-026-69765-7
1•bookofjoe•26m ago•1 comments

XFX Is Fixing the Part of Crypto That Still Feels Like a Wire Transfer

https://www.siliconsnark.com/a-startup-called-xfx-is-fixing-the-part-of-crypto-that-still-feels-l...
1•SaaSasaurus•26m ago•0 comments

Arizona bill would require voter approval of government surveillance

https://azcapitoltimes.com/news/2026/03/26/gop-bill-would-require-voter-approval-of-government-su...
2•loteck•28m ago•0 comments

European Parliament delays implementation of parts of the EU AI Act

https://www.cio.com/article/4150989/european-parliament-delays-implementation-of-parts-of-the-eu-...
1•oopsiremembered•28m ago•0 comments

Mortgage Foreclosures Are Increasing Is It a "Market Correction"?

https://povertytrap.substack.com/p/mortgage-foreclosures-are-increasing
5•jdemartin•50m ago•0 comments

From Zip to Nought

https://hackaday.com/2026/03/24/from-zip-to-nought-the-rise-and-fall-of-iomega/
1•codazoda•53m ago•1 comments

HandyMKV for MakeMKV and HandBrake Automation

https://github.com/dmars8047/handymkv
4•geerlingguy•55m ago•0 comments

Are prime numbers hiding inside black holes? [SciAm]

https://www.scientificamerican.com/article/are-prime-numbers-hiding-inside-black-holes/
1•calf•55m ago•0 comments

I Applied Karpathy's Autoresearch Idea to LLM Inference

https://twitter.com/manthanguptaa/status/2036785420349174073
2•gmays•1h ago•0 comments

Show HN: jsoon, a streaming JSON parser and query engine in C

https://github.com/xtellect/jsoon
1•enduku•1h ago•0 comments

AI for software developers is in a 'dangerous state'

https://www.theregister.com/2026/03/18/ai_for_software_developers_qcon/
4•sylvainkalache•1h ago•0 comments

AI-Gile Manifesto

https://gonzih.github.io/
3•Gonzih•1h ago•0 comments

Can a Model Teach Itself with Prompts Instead of Gradients?

https://burtonye.github.io/posts/training-free-grpo-experiment/
3•gueridon•1h ago•0 comments

Show HN: Dinner Party Practice

https://dinnerpartypractice.com
3•QingWu•1h ago•1 comments

BPF Comes to Io_uring at Last

https://lwn.net/Articles/1062286/
2•signa11•1h ago•0 comments
Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•10mo ago

Comments

palata•10mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.