frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

(Synced) Passkey Is Weak

https://yourpasskeyisweak.com/
3•T3OU-736•3h ago

Comments

T3OU-736•2h ago
There's a [DEFCon 33 talk](https://youtu.be/xdl08cPDgtE?si=SwZ-87jzDbNeP1Mx) on this, too.

I... Am not sure how I feel about it. On tech merits, this absolutely makes sense - the tech is slinging private keys around, and their secure storage is a hard problem.

On the practical merits - maybe? Token-backed decryption of the password manager's database seems like a devent solution? But does this happen? Is there a password manager which uses the public key derived from FIDO2 token's on-chip private key to decrypt the database?

On-token storage is limited (though 100 passkeys on a YK 5 Nano is fairly generous) - but what if we just used the YK as the "Private key is here and ONLY here" setup?

I kinda like the OFFOAD+ design - it promises to show me to where I am authenticating. With origin binding should be a nobrainer, but still, it speaks to me.

Whoop is trying to copyright UI patterns, activity rings, dark mode and words

https://www.youtube.com/watch?v=iAcx7kP9sog
3•chakintosh•3m ago•0 comments

vLLM introduces memory optimizations for long-context inference

https://github.com/vllm-project/vllm/releases
2•addisud•4m ago•0 comments

We Score MCP Servers – and Why We Rebuilt It from Scratch

https://mcppedia.org/blog/2026-04-04-how-we-score-mcp-servers
2•bibekshrestha•9m ago•1 comments

The Only Game Worth Playing

https://newsletter.calvinrosser.com/p/207
2•sillywabbit•9m ago•0 comments

Map Gesture Controls - Control maps with your hands

https://sanderdesnaijer.github.io/map-gesture-controls/
1•hebelehubele•12m ago•0 comments

Show HN: Local-first resume generator with in-browser PDF rendering

https://resume.journy.live/
2•dlvktrsh•13m ago•1 comments

WebAssembly Explorer

https://mbebenita.github.io/WasmExplorer/
2•luu•13m ago•0 comments

Feds Seek Access to Three Texas State Parks for Border Wall

https://insideclimatenews.org/news/02042026/texas-state-parks-border-wall-construction/
2•geox•15m ago•0 comments

Debian Is Figuring Out How Age Verification Laws Will Impact It

https://www.phoronix.com/news/Debian-Undecided-Age-Laws
3•breve•16m ago•0 comments

A Python package for verifying PyPI attestations of other Python packages

https://github.com/Halfblood-Prince/trustcheck
1•halfblood1010•16m ago•2 comments

ACE on a USB→HDMI Adapter

https://blazelight.dev/blog/ms2160.mdx
1•theblazehen•18m ago•0 comments

LLM 'benchmark' – writing code controlling units in a 1v1 RTS

https://yare.io/ai-arena
2•levmiseri•22m ago•0 comments

Syd sandbox has new Tutorial

https://man.exherbo.org/sydtutorial.7.html
1•hayali•27m ago•0 comments

Making a Type Checker/LSP for Nix

https://johns.codes/blog/making-a-type-checker-lsp-for-nix
1•birdculture•30m ago•0 comments

The Oxygen Apocalpyse: how bacteria used a spin diode to wipe out ancient life

https://keiran-rowell.github.io/oxygen/2026-04-02-the-oxygen-apocalypse/
2•KR_compchem•31m ago•0 comments

Shibuya's New 'G-Cha and Ba-Cha' Cafe Is Run by Senior Citizens

https://spoon-tamago.com/shibuya-senior-citizen-cafe/
1•herbertl•31m ago•1 comments

Void: Netflix open-sources a model for physics-aware video object removal

https://firethering.com/void-ai-video-object-removal-physics/
1•steveharing1•32m ago•0 comments

Show HN: Dev Personality Test

https://personality.4m1r.dev/
1•4m1rk•34m ago•0 comments

Mad Television Tycoon

https://store.steampowered.com/app/3565020/Mad_Television_Tycoon/
1•doener•39m ago•0 comments

Mecha: A flat-file content management system for minimalists

https://github.com/mecha-cms/mecha
2•indigodaddy•39m ago•0 comments

Show HN: Harness CLI – Open-source agent loop for long-running app development

https://github.com/hyspacex/harness-cli
1•huanyux•39m ago•0 comments

Offering 1 free hour on marketing and distribution for early builders

1•zonementale•46m ago•0 comments

Show HN: Weakmap – weak map for Go without use of finalizers

https://codeberg.org/yarmak/weakmap
1•Snawoot•47m ago•0 comments

Cindy Cohn: Privacy's Defender – Fighting Digital Surveillance for over 30 Years [video]

https://www.youtube.com/watch?v=APYidsm5FOs
3•verdverm•48m ago•0 comments

Dropping capitalist-individualism for democratic-socialist spiritualism

https://thenotoriousdmg.substack.com/p/non-alignment-and-its-consequences
4•himanshu7net•49m ago•0 comments

NASA Astronomy Picture of the Day

https://apod.nasa.gov/apod/astropix.html
1•lschueller•49m ago•1 comments

Google Now Lets You Change Your Gmail Address

https://www.wired.com/story/how-to-change-your-gmail-address/
3•mgh2•50m ago•1 comments

Camels, sailboats and poultry trucks: One man's no-fly journey around the world

https://www.cnn.com/2026/04/01/travel/egyptian-traveler-omar-nok-round-the-world-without-flying
2•NaOH•55m ago•0 comments

OpenClaw CVE and Security Advisory Tracker

https://github.com/jgamblin/OpenClawCVEs/
4•_____k•57m ago•0 comments

SEC Rubio Revokes Green Cards of Foreign Nationals W Ties to Iranian Terror

https://www.state.gov/releases/office-of-the-spokesperson/2026/04/secretary-rubio-revokes-green-c...
2•737min•57m ago•0 comments