frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Passwords are okay, impulsive Internet isn't

https://www.dedoimedo.com/life/passwords-passkeys.html
3•brycewray•11mo ago

Comments

palata•11mo ago
Hmm... I see a rant against the state of software (bad software, AI diarrhea, ...) and TooBigTech having control over everything. I can agree with that, but it has nothing to do with the "passwords vs passkeys" question.

The rant against passkeys? I don't get it. Just like one can use a password manager controlled by TooBigTech or KeePass, one can use a passkey controlled by TooBigTech or a Yubikey. I find it great to authenticate directly with my Yubikey (over FIDO2) instead of using my Yubikey to decrypt a password and copying it in a form.

And then there is the part that is completely wrong about security. They say that they "can't trust their phone" so they don't want to keep the passkeys there. But that is not correct: if the passkeys are encrypted and the key is stored in a TPM, then that's effectively similar to having a security key (you have to trust the TPM, just as you have to trust the security key of course).

And then there is the nonsense:

> I can set up KeePass Portable on a USB key, run it in Linux via WINE, place it inside an encrypted VeraCrypt container, copy to any which file sharing service, if I want.

If the device where you enter the password is compromised, then the password will be compromised as soon as you enter it on that device. No matter how much you show off with your funny setup with WINE and VeraCrypt. A password manager doesn't protect against that, so passwords can be exfiltrated as they are used. Whereas a FIDO2 authentication requires the passkey every time. E.g. I need to physically touch my Yubikey for it to sign the challenge. It could be MitM, but it is visible ("I touched my Yubikey and it didn't work, what happened?").

Authenticating over FIDO2 with a security key is strictly superior to entering a password in a field, period.

Mirror – private reflection app with long-term memory via knowledge graph

https://mirror-eight-gamma.vercel.app
1•eduardonrj•1m ago•0 comments

A Dumb Introduction to Z3

https://ar-ms.me/thoughts/a-gentle-introduction-to-z3/
1•y1n0•1m ago•0 comments

Contained Codex Networking

1•orbisvicis•3m ago•0 comments

Developer to Manager

https://matthewquerzoli.com/#/blog/08-10-2025-developer-to-manager
1•Quiza12•3m ago•0 comments

An Explainer of Section 702 of the Foreign Intelligence Surveillance Act

https://www.brennancenter.org/our-work/research-reports/section-702-foreign-intelligence-surveill...
1•Cider9986•3m ago•0 comments

We're Using So Much AI That Computing Firepower Is Running Out

https://www.wsj.com/tech/ai/ai-is-using-so-much-energy-that-computing-firepower-is-running-out-15...
1•1vuio0pswjnm7•3m ago•0 comments

Everyone Has Trump's Phone Number Now

https://www.theatlantic.com/politics/2026/03/trump-phone-number/686370/
1•Cider9986•4m ago•0 comments

Medicine piggybacks onto fat absorption pathways to allow oral delivery

https://medicalxpress.com/news/2026-03-medicine-piggybacks-fat-absorption-pathways.html
2•PaulHoule•5m ago•0 comments

David Wynn Miller

https://en.wikipedia.org/wiki/David_Wynn_Miller
3•thunderbong•8m ago•0 comments

A New Computer Chip Could Withstand the Hellscape of Venus

https://www.sciencealert.com/a-new-computer-chip-could-finally-withstand-the-hellscape-of-venus
1•y1n0•14m ago•0 comments

OpenPanel – Open-Source Web and Product Analytics

https://openpanel.dev/
1•radeeyate•15m ago•0 comments

Show HN: React-native-sightline – floating dev overlay for FPS/memory/re-render

https://github.com/Srikanth-AD/react-native-sightline
2•stackdirector•17m ago•0 comments

Meta spins up AI version of Mark Zuckerberg to engage with employees

https://arstechnica.com/ai/2026/04/meta-spins-up-ai-version-of-mark-zuckerberg-to-engage-with-emp...
2•cratermoon•19m ago•0 comments

AI Agent Stores – Making Shopee Products Findable by ChatGPT and Perplexity

https://www.bbiz.shop/blog
3•kenttuzuu•21m ago•0 comments

DaVinci Resolve releases Photo Editor

https://www.blackmagicdesign.com/products/davinciresolve/photo
1•thebiblelover7•21m ago•0 comments

108 Chrome Extensions Linked to Data Exfiltration and Session Theft via C2

https://socket.dev/blog/108-chrome-ext-linked-to-data-exfil-session-theft-shared-c2
2•jbegley•23m ago•0 comments

A Primer on Datacenters

https://www.generativevalue.com/p/a-primer-on-data-centers
1•sneakerblack•26m ago•0 comments

Agentic coding at enterprise scale demands spec-driven development

https://venturebeat.com/orchestration/agentic-coding-at-enterprise-scale-demands-spec-driven-deve...
1•y1n0•30m ago•0 comments

Automated Conjecture Resolution with Formal Verification

https://arxiv.org/abs/2604.03789
1•throwaway81523•36m ago•0 comments

Ente Hackathon #2

https://ente.com/blog/ente-hackathon-2026-april/
1•Cider9986•37m ago•0 comments

United CEO Has Pitched Possible Tie-Up with Rival American

https://www.bloomberg.com/news/articles/2026-04-13/united-ceo-has-pitched-possible-combination-wi...
2•mancerayder•37m ago•2 comments

World Quantum Day 2026

https://doodles.google/doodle/world-quantum-day-2026/
2•mxfh•38m ago•0 comments

Matrix-Game 3.0: Real-Time and Streaming Interactive World Model

https://matrix-game-v3.github.io/
1•pella•45m ago•0 comments

An Amazon warehouse worker died on the job at Oregon facility

https://techcrunch.com/2026/04/13/an-amazon-warehouse-worker-died-on-the-job-at-oregon-facility/
4•cebert•47m ago•1 comments

OpenAI acquires AI personal finance startup Hiro – financial agents next?

https://techcrunch.com/2026/04/13/openai-has-bought-ai-personal-finance-startup-hiro/
2•yesensm•51m ago•0 comments

MCP server for trading intelligence–gap scanner,SEC alerts,insider tracking

https://zivio-mcp-production.up.railway.app
1•doshinikunj•52m ago•0 comments

Wyden Urges House to Reject Handing Trump Unchecked Surveillance Authority

https://www.wyden.senate.gov/news/press-releases/wyden-urges-house-members-to-reject-handing-dona...
4•Cider9986•56m ago•0 comments

U.S. Says Wiretap Program Thwarted Attack on 2024 Taylor Swift Concert

https://www.nytimes.com/2026/04/09/us/politics/section-702-surveillance-fisa.html
2•Cider9986•56m ago•0 comments

Willingness to fail is now a superpower

https://nekolucifer.substack.com/p/willingness-to-fail-is-now-a-superpower
2•gurjeet•1h ago•0 comments

Citation Integrity

https://citationintegrity.org/
1•SanjayMehta•1h ago•0 comments