frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•1y ago

Comments

palata•1y ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Some Thoughts on AI Safety

https://stevekinney.com/writing/thoughts-on-ai-safety
1•stevekinney•2m ago•0 comments

Is AI ruining our skills? Early results are in – and they're not good

https://www.nature.com/articles/d41586-026-01947-1
3•Michelangelo11•5m ago•0 comments

Simplicity always wins:SOTA on swe-pro,tb2,-verif on 21 models with simple-agent

https://github.com/strands-labs/benchmark-harnesses
2•gaurav71531•8m ago•1 comments

Better Graph Database Ball

https://blog.ladybugdb.com/post/better-graph-database-ball/
1•eatonphil•8m ago•0 comments

Poll: What's your primary AI coding agent/orchestrator?

1•jacobgold•10m ago•0 comments

Windows 11 update broke the Recycle Bin, OneDrive, and your PC's stability

https://www.techspot.com/news/112831-microsoft-confirms-weird-recycle-bin-bug-windows-11.html
5•speckx•13m ago•0 comments

John Jumper leaves Google to join Anthropic

https://twitter.com/JohnJumperSci/status/2068001285173834106
2•artninja1988•13m ago•2 comments

Pavel Durov accuses Meta of sabotaging access in India with BGP hijacks

https://www.theregister.com/networks/2026/06/19/telegram-founder-accuses-meta-of-sabotaging-acces...
3•rndsignals•14m ago•0 comments

Show HN: Multiplayer Usage Tracking for Claude Code, Codex and OpenCode

https://github.com/useautumn/summer
1•johnyeocx•15m ago•0 comments

Just made an app and MCP Server to convert Markdown to Google Docs

1•baroiall•16m ago•0 comments

Deep learning reveals antimicrobial peptides within prions

https://www.nature.com/articles/s41564-026-02408-1
1•bookofjoe•16m ago•0 comments

We Liked Remote Work. Then We Looked at the Data.

https://www.nytimes.com/2026/06/17/opinion/remote-work-depression.html
3•nickv•17m ago•5 comments

Geopolitical jitters push Europe's internet registry from cloud-first strategy

https://www.theregister.com/networks/2026/06/19/geopolitical-jitters-push-europes-internet-regist...
1•Bender•17m ago•0 comments

Five Things the "Nuke Bros" Don't Want You to Know About Small Modular Reactors

https://blog.ucs.org/edwin-lyman/five-things-the-nuclear-bros-dont-want-you-to-know-about-small-m...
3•cratermoon•17m ago•1 comments

Iconic Twin Cities rapper Eyedea finds new life with AI-generated album

https://www.cbsnews.com/minnesota/news/eyedea-ai-twin-cities-hip-hop-album/
2•NDlurker•17m ago•1 comments

Marktide – Performant HTML to Markdown for Python

https://github.com/zocomputer/marktide
2•benzguo•18m ago•0 comments

Microsoft discovers new lightweight backdoor that steals cryptocurrency

https://arstechnica.com/security/2026/06/microsoft-spots-new-self-propagating-malware-for-stealin...
3•Bender•19m ago•0 comments

Rebuild begins at Blue Origin launch pad; Relativity targets Mars

https://arstechnica.com/space/2026/06/rocket-report-rebuild-begins-at-blue-origin-launch-pad-rela...
2•Bender•19m ago•0 comments

Ask HN: What is the coolest tech progress outside AI?

5•vantareed•19m ago•0 comments

Mate-Selection and the Dark Triad

https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=2384&context=soss_research
2•jruohonen•22m ago•0 comments

Show HN: Open-source Antigravity plugin for Claude Code

https://simplybychris.github.io/antigravity-plugin-cc/
2•simplybychris•23m ago•0 comments

Hospitals serving Medicaid patients prepare to take payment caps on the chin

https://healthexec.com/topics/healthcare-management/healthcare-policy/medicaid-state-directed-pay...
3•petethomas•24m ago•0 comments

Conway's Game of Life in Pure SQL

https://www.dbpro.app/blog/game-of-life-in-pure-sql
2•upmostly•24m ago•0 comments

Ask HN: How do you get feedback for beta apps

2•totaldude87•25m ago•0 comments

Learning to Program with the Cybiko Handheld Computer Using B2C

https://pic.hallikainen.org/techref/cybiko/b2c/ch1.htm
3•ForHackernews•27m ago•0 comments

LLM Quantization Project Part 1: What Even Is an LLM?

https://www.lttlabs.com/articles/2026/06/19/llm-quantization-part-1-what-even-is-an-llm
3•LabsLucas•30m ago•1 comments

Everything's bigger and better in Texas – even data breaches

https://www.theregister.com/security/2026/06/19/texas-gov-vendor-breach-exposes-data-of-3m-hunter...
2•jruohonen•30m ago•0 comments

APT28, an Evolution of Tradecraft

https://blog.sekoia.io/apt28-an-evolution-of-tradecraft/
3•mooreds•31m ago•0 comments

A New Bill Takes Aim at Government Pressure to Silence Lawful Online Speech

https://www.eff.org/deeplinks/2026/06/new-bill-takes-aim-government-pressure-silence-lawful-onlin...
22•hn_acker•32m ago•5 comments

Court Records Should Be Free

https://www.eff.org/deeplinks/2026/06/court-records-should-be-free
6•hn_acker•32m ago•1 comments