this post was submitted on 28 Feb 2025
4 points (100.0% liked)

memes

15623 readers
3380 users here now

Community rules

1. Be civilNo trolling, bigotry or other insulting / annoying behaviour

2. No politicsThis is non-politics community. For political memes please go to !politicalmemes@lemmy.world

3. No recent repostsCheck for reposts when posting a meme, you can only repost after 1 month

4. No botsNo bots without the express approval of the mods or the admins

5. No Spam/AdsNo advertisements or spam. This is an instance rule and the only way to live.

A collection of some classic Lemmy memes for your enjoyment

Sister communities

founded 2 years ago
MODERATORS
 
top 13 comments
sorted by: hot top controversial new old
[–] hemko@lemmy.dbzer0.com 0 points 3 months ago (1 children)

What's wrong with passkeys? I'm in love with passwordless sign-in with yubikey, so much easier and faster than password + totp

[–] deegeese@sopuli.xyz 0 points 3 months ago (1 children)

It’s shitty user experience when forced to dig out my phone to authenticate myself to a site I barely give half a shit about.

Like I wouldn’t even have an account if it wasn’t forced, and now you assholes want my phone too?

[–] Jackthelad@lemmy.world -1 points 3 months ago

Yes, extra security for your personal information is so irritating.

[–] tabularasa@lemmy.ca 0 points 3 months ago (2 children)

The amount of people in this thread that don't understand passkeys surprises me. This is Lemmy. Aren't we the technical Linux nerds of the Internet?

[–] Maggoty@lemmy.world 0 points 3 months ago (3 children)

2FA is just dead simple. I contact you, you contact me, handshake achieved. If you call me out of the blue I raise the alarm. If you get a login attempt with a failed handshake you raise the alarm.

Putting it all behind a pop up screen just isn't trustworthy to the human brain.

[–] jj4211@lemmy.world 0 points 3 months ago

SMS 2FA is notoriously compromised by various means.

[–] bearboiblake@pawb.social 0 points 3 months ago (1 children)

TOTP 2FA is less secure than passkeys. 2FA TOTP keys can be phished. Passkey authentication cannot be phished. This is a security improvement which can make people completely immune to phishing attacks. That's huge. And it doesn't have any privacy risks, no loss of anonymity. It's an open standard.

This is, objectively, a rare example of new technology which will make the world better and safer for us.

[–] Maggoty@lemmy.world 0 points 3 months ago (1 children)

I get that, the problem is human psychology.

[–] bearboiblake@pawb.social 1 points 3 months ago

everyone is sick and tired of tech promising to make the world better, only to make everything worse. i totally get the mistrust, the feeling that this is probanly just another trick from big corporations to steal even more of your privacy. i know much better than most people what it's like. i know you've got no real reason to believe me, i'm just a random silly gay furry boy, but, trust me, in this case, we should be adopting this tech. if you've got family members or friends who are more vulnerable to phishing scams - often scammers target the elderly - i'd really encourage you to encourage them to set up passkeys. as always, i strongly recommend bitwarden - it can manage passkeys and sync them between devices and it's totally secure and open source.

much love & solidarity!

[–] HelixDab2@lemm.ee 0 points 3 months ago (1 children)

2FA is great, right up until you're also the victim of a sim swap attack.

[–] WhatAmLemmy@lemmy.world 1 points 3 months ago* (last edited 3 months ago)

2FA is not SMS. SMS is the least secure, shittiest, and simplest form of 2FA, designed as the bare minimum for the average chucklefuck. Everywhere implemented it hastily because the average idiot still uses the same password for everything. It should be illegal as the only form of 2FA, but our governments are run by criminally corrupt dinosaurs.

Fun story! Back in 2017 I tried to remove SMS 2FA entirely, and switch to a data only mobile service. I use 2FA everywhere it's available, but was able replace SMS with TOTP everywhere except banks, even on big tech platforms where you could only activate TOTP after adding a mobile number and enabling SMS 2FA (you could then remove the mobile number). I ultimately had to keep the voice service because banks required SMS 2FA, with no alternatives beyond their own custom 2FA apps, that can only be registered by SMS. Almost a decade later I have more SMS 2FA than ever before.

The moral of the story is we live in a clown world capitalist dictatorship.

[–] areyouevenreal@lemm.ee 0 points 3 months ago* (last edited 3 months ago) (1 children)

You understand that technical people often are the least likely to trust new technology and are often stuck in the mud when it comes to technology? Doubly so if you are anti-corporation. It seems anything that isn't the Unix way of doing things can be questioned.

There is a good meme about people who love technology vs people who actually work with the stuff. The former using IoT devices to turn their lights on while the latter uses a light switch and has a gun in case the printer starts making weird noises.

[–] tabularasa@lemmy.ca 1 points 3 months ago

Good point, and I love that meme.