A developer has published criticism of passkeys, the passwordless authentication method gaining industry backing. The post has sparked substantial discussion in tech communities.
The article raises concerns about passkeys, which major tech companies including Apple, Google, and Microsoft have been promoting as replacements for traditional passwords.
Passkeys use cryptographic key pairs stored on devices, eliminating the need for memorized passwords. Proponents argue they improve security and user experience by reducing phishing attacks and password reuse.
The criticism appears to center on practical implementation challenges and adoption friction. The post generated 154 comments on Hacker News and 177 upvotes, indicating widespread interest in the debate.
The discussion highlights ongoing tension between security improvements and user convenience. While passwordless authentication offers technical advantages, real-world deployment involves questions about device compatibility, recovery mechanisms, and transition strategies from existing password systems.
Industry adoption of passkeys continues despite skepticism, with support baked into major platforms and browsers.
An 18-year-old Swedish teenager known as Chai has been sentenced to over 10 years in prison for attempted murder, rape, and aggravated assault committed online against victims in Germany and Australia.
Attackers are running a malware campaign using fake GitHub repositories impersonating LastPass and other software vendors to distribute Rapuncel, a newly discovered information stealer.
Image-sharing platform Gyazo confirmed a data breach after attackers exploited a server vulnerability to steal 23.6 million user records. The company has launched an investigation into the incident.
A liquefied natural gas tanker transporting US fuel to Europe experienced a systems failure that crew members suspect was a cyberattack. The incident marks a significant security concern for critical energy infrastructure.