@Anachron@fosstodon.org
And passkeys… I don't get that either, to me this "just rely on someone's infrastructure and expect it to be secure and comfy" sounds like bullshit🤷
@oscherler
I don't quite get your point. I don't expect my implementation to be technologically/cryptographically superior to what Apple/Google/MS can come up with — there is no need for it to be: centralised infrastructure, no matter how well defended will always remain an attractive target, my script — never will be, it's too unique and not worth the effort, this is purely practical standpoint🤷
@Anachron@fosstodon.org
@m0xee My point is that a lot of security experts agree that passkeys are better than passwords, immune to fishing, etc, yet you, obviously not a security expert, feel confident enough to suggest it’s all bullshit.
@m0xee @Anachron You remind me of this junior developer, who, whenever his code wasn’t working, was looking for bugs in the library he was using.
What’s the name for the opposite of impostor syndrome again?