frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•7mo ago

Comments

palata•7mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Google plans to power a data center with fossil fuels with almost no emissions

https://theconversation.com/google-plans-to-power-a-new-data-center-with-fossil-fuels-yet-release...
1•PaulHoule•5m ago•1 comments

A plain-language proposal to enforce fiscal accountability in Congress

https://add28th.org
1•concerneddude•6m ago•1 comments

Show HN: Open-Source Project Discovery and Analytics

https://gitdb.net
1•alvinunreal•7m ago•0 comments

21 Lessons from 14 Years at Google

https://addyo.substack.com/p/21-lessons-from-14-years-at-google
2•rmason•7m ago•0 comments

Now witness the power of this operational Fediverse – Terence Eden's Blog

https://shkspr.mobi/blog/2025/11/now-witness-the-power-of-this-fully-operational-fediverse/
1•janandonly•8m ago•0 comments

Prohibition tossed a wet blanket on America's inventors

https://www.atlasobscura.com/articles/things-invented-in-bars
1•fanf2•8m ago•0 comments

Spaw – AI music platform for making banging beats with text

https://drive.google.com/file/d/1SUk7x7xSMMjne9jwDVy4w0wiOuAHGdu9/view?usp=sharing
1•ade_code•9m ago•1 comments

Does my key fob have more computing power than the Lunar lander?

https://www.buzzsprout.com/2469780/episodes/18340142-17-does-my-key-fob-have-more-computing-power...
1•jammcq•9m ago•1 comments

China has invented a whole new way to do innovation

https://www.noahpinion.blog/p/china-has-invented-a-whole-new-way
2•bookofjoe•9m ago•0 comments

Show HN: I built a "Headless CMS" for my resume (Next.js and Puppeteer)

1•lpipe•10m ago•0 comments

Velocity Coding

https://0thernet.substack.com/p/velocity-coding
1•handfuloflight•12m ago•0 comments

Show HN: Free API for REVE EEG Foundation Model

https://web-production-73111.up.railway.app/docs
1•briandaley26•13m ago•0 comments

Show HN: I built a small tool to track receipts and warranty dates

https://www.retreat-app.tech/
1•temidaradev•17m ago•0 comments

How to Avoid IaC Drift

https://newsletter.masterpoint.io/p/how-to-avoid-iac-drift
1•mooreds•20m ago•0 comments

Show HN: A Grafana you can share with anyone

https://github.com/towlabs/dashfrog
1•mehdig10•20m ago•0 comments

GitHub in 2025

https://redmonk.com/sogrady/2025/11/07/github-2025/
1•mooreds•21m ago•0 comments

Stronger Normalization-Free Transformers

https://arxiv.org/abs/2512.10938
1•mfiguiere•21m ago•0 comments

Interpreters everywhere! – Lindsey Kuper [video]

https://www.youtube.com/watch?v=q8398PMcuTc
1•matt_d•23m ago•0 comments

Figr

https://docs.figr.design
1•handfuloflight•23m ago•0 comments

Show HN: DoD CAC Authentication with Cloudflare Workers

https://github.com/willswire/dod-cac-auth-cloudflare-workers
1•willswire•30m ago•0 comments

The Power of Creative Destruction – Philippe Aghion Nobel Laureate Lecture Notes

https://liza.io/the-power-of-creative-destruction-philippe-aghion-nobel-laureate-lecture-notes/
1•drakonka•31m ago•1 comments

African athlete lured to Russia for work, ends up on front lines of Ukraine war

https://www.abc.net.au/news/2025-12-14/athlete-says-russia-lured-him-for-work-then-sent-him-to-wa...
4•testrun•32m ago•0 comments

Recovering Anthony Bourdain's (really) lost Li.st's

https://sandyuraz.com/blogs/bourdain/
11•thecsw•32m ago•2 comments

Mental Shortcuts and Sensible Defaults

https://rojoroboto.com/newsletter/weekly-reflection-002
1•mooreds•39m ago•0 comments

The Era of Visual Studio Code (2020)

https://blog.robenkleene.com/2020/09/21/the-era-of-visual-studio-code/
2•handfuloflight•42m ago•1 comments

Workday project at Washington University hits $266M

https://www.theregister.com/2025/12/12/washington_university_workday_costs_revealed/
24•sebastian_z•52m ago•20 comments

Myna v2.0: contextual variants, more weights (and even supports APL)

https://github.com/sayyadirfanali/Myna/releases/tag/v2.0.0
2•todsacerdoti•53m ago•0 comments

Safari 26.2 Release Notes

https://developer.apple.com/documentation/safari-release-notes/safari-26_2-release-notes
1•ksec•54m ago•0 comments

Chrome Extension Manager

https://chromewebstore.google.com/detail/extension-manager-extensi/jafcieombbedhpdkjlhcggagepcgaihp
1•kaporalix•54m ago•1 comments

China's trade surplus tops record US$1T, defying trade war uncertainty

https://www.scmp.com/economy/economic-indicators/article/3335551/chinas-exports-rebound-november-...
7•ksec•55m ago•0 comments