frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•11mo ago

Comments

palata•11mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Relation between Layoffs and AI tools subscriptions

https://www.reddit.com/r/Layoffs/s/QlUYUyjWuP
1•the_arun•1m ago•0 comments

Can AI answer tax questions reliably?

https://accountsdraft.com/resources/can-chatgpt-answer-uk-tax-questions-reliably
1•Rob_Benson-May•2m ago•0 comments

DRAM Prices Rise Again as Samsung Adds 30% Increase

https://www.eteknix.com/dram-prices-rise-again-as-samsung-adds-30-increase/
1•elorant•5m ago•0 comments

Talat's AI meeting notes stay on your machine, not in the cloud

https://techcrunch.com/2026/03/24/talats-ai-meeting-notes-stay-on-your-machine-not-in-the-cloud/
1•PaulHoule•7m ago•0 comments

Reasons Dumbphones Work

https://josebriones.substack.com/p/3-reasons-dumbphones-work
1•toomuchtodo•9m ago•1 comments

Block secrets before they enter LLM's Context with Agentmask

https://github.com/adithyan-ak/agentmask
1•akoffsec•9m ago•0 comments

Show HN: We unionized Maxwell's Demon– A paper on labor rights in thermodynamics

https://zenodo.org/records/19442828
1•Serena_Zayn•12m ago•0 comments

Thick Steps and Thin Steps in the AI Era

https://aparnacd.substack.com/p/thick-steps-and-thin-steps-in-the
1•nowflux•12m ago•0 comments

OpenClaw CVE Tracker

https://days-since-openclaw-cve.com
1•cdrnsf•13m ago•0 comments

Show HN: I built a site that turns your Steam gaming hours into a RL skill tree

https://alternatelife.xyz/
2•naorz•13m ago•0 comments

Show HN: Jbofs – explicit file placement across independent disks

https://github.com/aozgaa/jbofs
2•aozgaa•13m ago•1 comments

Legal Is Next

https://www.harvey.ai/blog/autonomous-agents-legal-is-next
1•nowflux•16m ago•0 comments

AI vs. Human Intelligence: Comparing Strengths and Limits

https://www.intuit.com/blog/innovative-thinking/ai-vs-human-intelligence/
1•salkahfi•16m ago•0 comments

Nutella product placement on Artemis II [video]

https://www.youtube.com/watch?v=lr0T1QCTl-M
1•reconnecting•18m ago•0 comments

Tim Cook Is an Embarrassing Coward

https://karlbode.com/tim-cook-is-an-embarrassing-coward/
2•cdrnsf•19m ago•0 comments

Subagent Invocation: Why Your Chatbot Needs a Team

https://wpp.opero.so
1•juancruzguillen•19m ago•0 comments

$2000 Bug Bounty to Whoever Fixes the Lenovo Legion Pro 7's Speakers on Linux

https://github.com/nadimkobeissi/16iax10h-linux-sound-saga/blob/main/PLEDGE.md
1•nickswalker•23m ago•0 comments

Orientale basin photographed by Artemis II

https://www.nasa.gov/image-detail/amf-art002e009212/
2•ajd555•26m ago•1 comments

The Downfall and Enshittification of Microsoft in 2026

https://caio.ca/blog/the-downfall-and-enshittification-of-microsoft.html
2•speckx•26m ago•1 comments

College instructor uses typewriters to curb AI work and teach life lessons

https://apnews.com/article/typewriter-ai-cheating-chatgpt-cornell-ce10e1ca0f10c96f79b7d988bb56448b
3•jethronethro•28m ago•0 comments

If No One Pays for Proof, Everyone Will Pay for the Loss

https://freakonometrics.hypotheses.org/89367
1•cdrnsf•28m ago•0 comments

Ask HN: Alternatives to Claude (Code)?

1•vixalien•28m ago•0 comments

Inside a Corporate Retreat That Went Very Badly Wrong

https://www.wsj.com/lifestyle/workplace/corporate-retreat-gone-wrong-07754741
4•dsr12•29m ago•0 comments

L-System Tree Planter

https://manymanytrees.com/
1•diogocteles•29m ago•0 comments

Show HN: Mactic – Open source touchpad haptics tool for MacBooks

https://github.com/MatMercer/mactic
2•MatMercer•29m ago•0 comments

Dor: The Structure Is the Product

https://twitter.com/dorvonlevi/status/2041220562283110579
1•nadis•30m ago•0 comments

Why Enterprise AI Needs More Than Documents

https://kimura.yumiwillems.com/p/human-as-context-why-enterprise-ai
1•yumiatlead•30m ago•0 comments

Root Persistence via macOS Recovery Mode Safari

https://yaseenghanem.com/recovery-unrestricted-write-access/
7•yaseeng•31m ago•3 comments

'Microshifting' puts a new spin on 9-to-5 schedules

https://apnews.com/article/microshifting-work-time-flexible-schedule-balance-97a98519916b447cd60c...
5•billybuckwheat•33m ago•0 comments

Jsonlogic-Fast

https://github.com/JPatronC92/jsonlogic-fast
1•JPatronC92•33m ago•0 comments