this post was submitted on 28 Feb 2025
546 points (93.5% liked)

memes

14331 readers
3959 users here now

Community rules

1. Be civilNo trolling, bigotry or other insulting / annoying behaviour

2. No politicsThis is non-politics community. For political memes please go to !politicalmemes@lemmy.world

3. No recent repostsCheck for reposts when posting a meme, you can only repost after 1 month

4. No botsNo bots without the express approval of the mods or the admins

5. No Spam/AdsNo advertisements or spam. This is an instance rule and the only way to live.

A collection of some classic Lemmy memes for your enjoyment

Sister communities

founded 2 years ago
MODERATORS
 
(page 2) 50 comments
sorted by: hot top controversial new old
[–] Kirk@startrek.website 7 points 1 month ago (1 children)

Uhhh... Can someone ELI18 to me the problem with passkeys? I use them wherever available and find them very convenient.

[–] LordKitsuna@lemmy.world 3 points 1 month ago

Yeah i can sum it up for you

[–] Quexotic@infosec.pub 6 points 1 month ago

Has this energy...

[–] whoisearth@lemmy.ca 5 points 1 month ago* (last edited 1 month ago) (4 children)

I'll use banks as an example

If they cared about your security there would not be a mobile app or website.

Hell, credit cards would still require a signature.

It's about cost first and foremost and then convenience.

Has nothing about you as a consumer. They don't give 2 shits about you as a consumer.

[–] throwback3090@lemmy.nz 7 points 1 month ago (2 children)

I mean you're right about banks but your examples make no sense.

Banks generally don't support 2fa, which is bad. Some banks (fidelity) still have character limits on passwords because they stores it in plaintext until recently so you could use it through the telephone system. They could implement a secure tap to pay system on your phones with enhanced security, rather than relying on Google to handle their job. And for credit cards themselves, switch to chip and pin.

"Banks don't have mobile apps"?? "Signatures are secure"?????🤡

load more comments (2 replies)
load more comments (3 replies)
[–] SleafordMod@feddit.uk 5 points 1 month ago (6 children)

I have no idea what a passkey is and I will probably only learn what it is when they become mandatory

I will just use passwords + 2FA for the moment

load more comments (6 replies)
[–] OpenPassageways@lemmy.zip 3 points 1 month ago (1 children)

Passkeys are phishing resistant, or so they say... but the web app still needs to let you in with password + 2FA... So I'm not sure how much that's really worth.

I guess if the users are typically never seeing a 2FA prompt then it should be more suspicious when they see one?

[–] TaviRider@reddthat.com 3 points 1 month ago

Passkeys are a replacement for passwords. Passwords don’t solve the problem of a lost password, and passkeys don’t solve the problem of a lost passkey. How a site deals with lost credentials is up to them. It doesn’t need to be password + 2FA.

[–] recall519@lemm.ee 3 points 1 month ago (1 children)

I just wish Google would stop overriding my passkey on Android for specific apps including their own.

[–] throwback3090@lemmy.nz 2 points 1 month ago (2 children)

You can change the provider to bitwarden.

[–] recall519@lemm.ee 2 points 1 month ago

I do have it overridden but Google Play Services isn't respecting my passkey default.

load more comments (1 replies)
[–] wowwoweowza@lemmy.world 2 points 1 month ago

Y’all are my people.

load more comments
view more: ‹ prev next ›