Hacker Newsnew | past | comments | ask | show | jobs | submit | more shim__'s commentslogin

I'd be so easy if this proposal were implemented: https://www.yubico.com/blog/yubico-proposes-webauthn-protoco... one could always register one or more additional keys without having access to them.


A door can be kicked in, a safe can be drilled, a password can be reset. But these keys (whether a phone or a Yubikey) to your digital life are irreplaceable if they're all lost. We've never been in this situation before.

The problem with any solution relying on a couple of physical devices as the sole access to your digital life is that the management and protection of those objects becomes one of the most important things in your life. These keys are supposed to give perfect security so by design making "software" copies brings that security to the level of passwords. But losing them kills your digital life.

You have two keys in the house and you have a fire or severe natural disaster? There's no reset for them and you just piled a tragedy on top of another. You want to restore them from a backup? You probably need the keys to begin with. People need one on them at all times, one at home, one or two in some other safe far away location but to still trust that they won't be misused there.

That's all people hear when they look into passkeys. "One more key" is not enough for most people, tech savvy or not.


Nowdays I'd just use WPA3


You can just sync Obsidian with nextcloud, Dropbox or whatever


It's bluetooth 5 with more tx power as far as I understand


According to their website(1), the bolt is BLE, and the unifying receiver used a proprietary 2.4GHz radio signal.

(1) https://support.logi.com/hc/en-us/articles/1500012483162-Wha...


Regular propellers somwtimes feature an rope cutter. If that doesn't work the sub could still surface and dispatch divers to free the prop.


I would be shocked (and impressed) if military subs had that. It sounds noisy.


Have you tried putting /nix on an filesystem with compression? I've experienced >50% in storage savings with Bcachefs + zstd and dedupe


Does this require M2 AI capabilities or can it also run on other platforms?


Seems to be running on llama.cpp, so it's going to be a question of performance. I don't have any M-cpu but on my 13th gen i5 I can run mistral at about 6.5 tokens per second. Which seems comparable to what this is.


It just uses llama.cpp as a "backend", so anywhere where llama.cpp works this should work too if I see this correctly.


Why are people so focussed on doors? Glass windows will always be the weak spot.


> My parents lived in an apartment

Most of the apartments are in multi-story buildings.


I assume this is the division between people that consider apartment living the default versus those that consider living in houses with outside-accessible windows the default.


That question is pointless if you're using windows


In practice, it is most certainly not pointless.

Given two USB drives, one encrypted with BitLocker and another with TC or VC, chances of master key recovery by Microsoft are definitely not the same.


> In practice, it is most certainly not pointless .... chances of master key recovery by Microsoft are definitely not the same.

I don't think those two sentences hold water when put together. In practice, if your risk is master key leakage and theft of the encrypted data by microsoft, you shouldn't be using windows. If you suspect that, MS can have a kernel mode driver masquerading as anything else, and it can just siphon your master key whenever you enter it.


And now that ms auth is apparently mostly compromised, extend microsoft to any threat actor in the wild.

I like VC for the portability of the encrypted .tc files. Keep all my backups as tc files, and recovered from more than one failure using them.

Once had an issue where dropbox corrupted the duplicates, so dont use dropbox anymore.


>ms auth is apparently mostly compromised

just gonna drop that like that aint a $10k+ implication, gonna need a src or ref thanks

unless you mean by 3letters, which dont exactly give their backdoors to randoms.

randoms aint coming across 3letter's backdoors, not active/modern ones anyway


https://news.ycombinator.com/item?id=37702095

it's probably more than a $10k implication..


Because convenience, creating a secure cloud backup and restoring it once you passed immigration is a lot of hassle must people would rather skip doing.


What? Change the password on your github account to something you can remember (grand mothers full name) and log out on your phone. Done.. Would work for google docs too.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: