Elektrine lite

← Feed

@mkristensson@thepit.social

Post #3348695

2026-06-18 19:19 UTC

RE: https://mastodon.social/@craignewmark/116770722780594757 From a strict security perspective this is true. But as my family's IT manager, both passcodes and single sign on are nightmares that I now actively avoid. They perpetuate lock in by large companies, removing any flexibility in who/when/how you can log in. Need to share a log in with your spouse? Impossible. Teenage kid traveling without the family and wants to watch a show? Impossible. Mom in the hospital and you need to pay her utility bill for her? Impossible.

Replies (1)

  • @publicvoit@graz.social 2026-06-19 06:55

    @mkristensson@thepit.social True. However, some megacorps are extending passkeys to allow for sharing and moving keys. Unfortunately, you lose the phishing protection with that as well. So yes, some passkeys setups aren't protection against phishing any more. 😞 Therefore, I use user/password + #FIDO2 hardware token when it *really* needs to be secure and #TOTP for the rest. Even with passkeys, FIDO2 hardware tokens don't support those convenience features where #passkeys lose #phishing protection. More on https://karl-voit.at/FIDO2-vs-Passkeys/ (German) #security #publicvoit

    Open ##3350574