this post was submitted on 24 May 2024
42 points (83.9% liked)

Technology

74438 readers
2063 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] sugar_in_your_tea@sh.itjust.works 1 points 1 year ago* (last edited 1 year ago) (1 children)

I honestly don't like passkeys, at least how they currently work. It seems the intent is to replace MFA with just one factor. I prefer 2FA with TOTP separate from my password manager, which means an attacker would need to exploit both to access my accounts.

That said, it's a sticking point for many people, so I hope Bitwarden gets it soon. I just probably won't use it.

From my understanding, passkeys is supposed to be something you have (phone) and something you know (pin) or something you are (biometrics)

I still use hardware keys like a yubikey (something I have) and my normal password via a password manager.