frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•1y ago

Comments

palata•1y ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

GTA 6 Physical Copies Won't Include a Disc, Will Just Be a Code in a Box

https://www.ign.com/articles/grand-theft-auto-6-physical-copies-wont-include-a-disc-will-just-be-...
2•jmsflknr•2m ago•0 comments

Americans Got Tricked into Using a Bank That Isn't a Bank [video]

https://www.youtube.com/watch?v=hiE7NvONU5U
2•onemoresoop•8m ago•0 comments

How to Write an Effective Software Design Document

https://refactoringenglish.com/excerpts/write-an-effective-design-doc/
1•theanonymousone•10m ago•0 comments

SoftBank Shareholders Update [pdf]

https://group.softbank/media/Project/sbg/sbg/pdf/ir/investors/shareholders/2026/shareholders-meet...
1•gregsadetsky•10m ago•1 comments

Bill Gates names women he had affairs with in Epstein testimony about blackmail

https://www.independent.co.uk/news/world/americas/bill-gates-jeffrey-epstein-house-oversight-comm...
2•handfuloflight•12m ago•0 comments

Connect Dropbox to Claude

https://help.dropbox.com/integrations/connect-dropbox-to-claude
2•dr_pardee•14m ago•0 comments

Bernie Sanders Wants a U.S. Sovereign Wealth Fund for AI

https://www.forbes.com/sites/jamesbroughel/2026/06/22/bernie-sanders-wants-a-us-sovereign-wealth-...
1•hentrep•15m ago•1 comments

The Artificial Analysis Speech to Speech Index

https://artificialanalysis.ai/articles/announcing-the-artificial-analysis-speech-to-speech-index
1•theanonymousone•16m ago•0 comments

The Secret Truth Behind the Abundance Movement – Dylan Gyauch-Lewis – TMR [video]

https://www.youtube.com/watch?v=jNOMjH-3gfU
1•xbmcuser•16m ago•0 comments

Rust for Malware Development

https://git.smukx.site/smukx/Rust-for-Malware-Development
1•rzk•19m ago•0 comments

IatroBench: Pre-Registered Evidence of Iatrogenic Harm from AI Safety Measures

https://arxiv.org/abs/2604.07709
1•NavinF•20m ago•0 comments

Show HN: TakoQA – A harness to get a swarm of agents to break your application

https://github.com/Tako-Research/TakoQA
1•sakuraiben•20m ago•0 comments

Why David Levinson Could Hack Aliens Using a PowerBook 5300 in Independence Day (1996)

https://decodingvibes.com/blog/why-david-levinson-could-hack-aliens-independence-day/
2•altmanaltman•23m ago•0 comments

Loop engineering, latest AI buzzword, still needs humans in the loop

https://www.theregister.com/ai-and-ml/2026/06/24/loop-engineering-latest-ai-buzzword-still-needs-...
2•Bender•23m ago•0 comments

Companies are not looking before they're leaping into the AI playpen

https://www.theregister.com/devops/2026/06/24/companies-are-not-looking-before-theyre-leaping-int...
2•Bender•24m ago•0 comments

Hotly anticipated Grand Theft Auto VI will cost more than other AAA games

https://arstechnica.com/gaming/2026/06/grand-theft-auto-vi-will-cost-80-without-a-physical-disc/
1•Bender•24m ago•1 comments

Show HN: Find the Shortest Path in 24 steps

https://pathology.thinky.gg/level/hi19hi19/against
1•k2xl•28m ago•0 comments

Security tools inside coding agents get ignored unless we do things

https://www.boringappsec.com/p/edition-34-a-consensus-is-finally
1•joj123•32m ago•0 comments

You all think it's normal to sit behind a laptop all day

1•shoman3003•33m ago•2 comments

Yunwu

https://yunwu.ai/
2•handfuloflight•45m ago•0 comments

Wan Streamer v0.1: End-to-End Real-Time Interactive Foundation Models

https://wan-streamer.com/
1•ilreb•48m ago•0 comments

Powerful back-to-back earthquakes strike Venezuela, collapsing buildings

https://www.bbc.com/news/live/c621z18wznet
2•tartoran•52m ago•1 comments

Projectlens v1.0.6 released, supports npkill

https://www.npmjs.com/package/projectlens
1•dagmawibabi•53m ago•1 comments

Alternatives to Nested If Function

https://medium.com/@crispomwangi/7-alternatives-to-nested-if-function-a9cb07f3df1e
1•andsoitis•1h ago•0 comments

LXM: Better Splittable Pseudorandom Number Generators (and Almost as Fast) [video]

https://www.youtube.com/watch?v=XXh86oA-WOE
1•matt_d•1h ago•0 comments

The Unbearable Cheapness of Open Weight Models

https://jamesoclaire.com/2026/06/25/the-unbearable-cheapness-of-open-weight-models/
4•ddxv•1h ago•0 comments

Europe swelters under deadly 'Omega' heatwave, more records broken

https://www.reuters.com/business/environment/power-cuts-france-leave-thousands-sweltering-amid-sc...
3•rawgabbit•1h ago•2 comments

This One's Not AI

https://blog.tacoda.dev/this-ones-not-ai-992c95537790
2•tacoda•1h ago•2 comments

Calculus in Coinductive Form (1998)

https://ieeexplore.ieee.org/document/705675
1•measurablefunc•1h ago•0 comments

Tldr we built the fastest and most compact embedded vector database in the world

https://github.com/Egoist-Machines/LodeDB
1•erinmeryl•1h ago•1 comments