• 0 Posts
  • 8 Comments
Joined 2 years ago
cake
Cake day: July 18th, 2023

help-circle





  • You’ll find that nobody has a problem with passkeys specifically. They have a problem with the implementation, and companies forcing passkeys onto users who don’t want or need them.

    I don’t need passkeys because I use a password manager. My threat model requires that I can restore my password manager, all 2FA, and regain full access to all my accounts from anywhere in the world, even if a natural disaster occurs and all my devices are destroyed.

    Passkeys and SMS 2FA are a direct threat to my threat model, and I can’t help but feel they’re designed to further entrench surveillance capitalism, and the invasion of privacy as a prerequisite for security.


  • 2FA is not SMS. SMS is the least secure, shittiest, and simplest form of 2FA, designed as the bare minimum for the average chucklefuck. Everywhere implemented it hastily because the average idiot still uses the same password for everything. It should be illegal as the only form of 2FA, but our governments are run by criminally corrupt dinosaurs.

    Fun story! Back in 2017 I tried to remove SMS 2FA entirely, and switch to a data only mobile service. I use 2FA everywhere it’s available, but was able replace SMS with TOTP everywhere except banks, even on big tech platforms where you could only activate TOTP after adding a mobile number and enabling SMS 2FA (you could then remove the mobile number). I ultimately had to keep the voice service because banks required SMS 2FA, with no alternatives beyond their own custom 2FA apps, that can only be registered by SMS. Almost a decade later I have more SMS 2FA than ever before.

    The moral of the story is we live in a clown world capitalist dictatorship.


  • None of us are as “free” as we believe we are. At the end of the day our politicians are all financed by our wealthiest individuals and corporations (many of which are foreign).

    No matter where you are the majority of your domestic politics, your geopolitics — your “national security” — is intrinsically linked to the wealthiest individuals and corporations that engage with your economy. This can happen anywhere, and it will if we do nothing.

    P.S. thanks mods!