frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•11mo ago

Comments

palata•11mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Turn messy chats into structured TODOs and notes automatically

https://noteithub.com
1•pardisapporify•4m ago•0 comments

DeepSeek V4 Flash

https://huggingface.co/deepseek-ai/DeepSeek-V4-Flash
2•S0y•5m ago•0 comments

DeepSeek 4 Launched

https://deepseek4.hk/
2•mariopt•8m ago•2 comments

In Defense of Blub Studies

https://www.benkuhn.net/blub/
2•jonnonz•9m ago•0 comments

Need Help Please

1•activist_mel•11m ago•0 comments

A quick look at Mythos run on Firefox: too much hype?

https://xark.es/b/mythos-firefox-150
1•leonidasv•13m ago•0 comments

Hello from Berkeley

https://fluoverse.com
2•Panos_moschos•15m ago•1 comments

Anthropic Engineering Postmortem: Claude's 60-Minute Memory Bug

https://www.aiuniverse.news/claudes-memory-lapse-a-bug-erased-its-reasoning-after-an-hour/
1•aiuniversenews•17m ago•0 comments

DeepSeek-V4

https://huggingface.co/collections/deepseek-ai/deepseek-v4
3•meetpateltech•18m ago•0 comments

DeepSeek-V4: Towards Highly Efficient Million-Token Context Intelligence

https://huggingface.co/deepseek-ai/DeepSeek-V4-Pro
19•cmrdporcupine•18m ago•2 comments

Dear friend, you have built a Kubernetes (2024)

https://www.macchaffee.com/blog/2024/you-have-built-a-kubernetes/
2•Wingy•18m ago•0 comments

The Centrality Fallacy and ACM

https://cacm.acm.org/opinion/the-centrality-fallacy-and-acm/
2•pykq•20m ago•0 comments

DeepSeek-V4 Preview Version is launched

2•lanbin•20m ago•0 comments

OpenInterpretability

https://openinterp.org/
2•caiovicentino•23m ago•0 comments

DeepSeek v4

https://api-docs.deepseek.com/
7•impact_sy•25m ago•0 comments

2026 Ruby on Rails Community Survey

https://railsdeveloper.com/survey/
7•mooreds•25m ago•0 comments

MemCoT: Test-Time Scaling Through Memory-Driven Chain-of-Thought

https://arxiv.org/abs/2604.08216
2•MemTensor•25m ago•1 comments

Claude Opus 4.6 was nerfed prior to release of Opus 4.7

https://twitter.com/levelsio/status/2047387029915271445
1•nomilk•25m ago•0 comments

AI Kills HTML?

https://twitter.com/zan2434/status/2046982383430496444
2•cuttothechase•25m ago•1 comments

What is on my phone in 2026

https://joshblais.com/blog/what-is-on-my-phone-in-2026/
1•colinprince•26m ago•0 comments

I gave an AI persistent memory, self-learning, and earned autonomy

https://github.com/WingedGuardian/GENesis-AGI
1•genesiscogai•27m ago•1 comments

DeepSeek-V4 Technical Report [pdf]

https://huggingface.co/deepseek-ai/DeepSeek-V4-Pro/blob/main/DeepSeek_V4.pdf
7•tianyicui•30m ago•0 comments

Medical Student Created Top Influencer 'Emily Hart' Using AI, Making $ Thousands

https://www.ibtimes.co.uk/ai-generated-influencer-emily-hart-maga-1793120
1•Baljhin•34m ago•3 comments

The System of Context for Production AI

https://www.mezmo.com/aura
1•pranay01•37m ago•0 comments

Nev – keyboard focused GUI and terminal text editor

https://github.com/Nimaoth/Nev
1•archargelod•41m ago•0 comments

I used to generically engineer plants to increase yield,now I sell garlic online

https://Demeterfamilyfarm.com
1•Hilliard_Ohiooo•42m ago•0 comments

XOXO Festival Archive

https://xoxofest.com/
2•surprisetalk•45m ago•0 comments

Introducing Data Exports

https://socket.dev/blog/introducing-data-exports
1•ilreb•51m ago•0 comments

Show HN: RustNmap

1•greatwallisme•52m ago•0 comments

These are the countries moving to ban social media for children

https://techcrunch.com/2026/04/23/social-media-ban-children-countries-list/
1•evo_9•58m ago•0 comments