this post was submitted on 26 Sep 2026
389 points (94.9% liked)

Technology

88272 readers
3109 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
(page 3) 50 comments
sorted by: hot top controversial new old
[–] SexualPolytope@lemmy.sdf.org 7 points 1 day ago* (last edited 1 day ago) (3 children)

I don't understand one thing about hardware keys. Aren't they, like, easy to steal? Sure, someone could torture my Bitwarden masterkey out of me, but hardware keys seem to make sabotage much much easier.

[–] 4am@lemmy.zip 5 points 1 day ago

They’re as easy to steal and misuse as a laptop with KeePassX on it. Hardware as a second factor was always a better use case.

load more comments (2 replies)
[–] hornedfiend@sopuli.xyz 8 points 1 day ago (1 children)

Passkeys are a good idea with an insufficient compatibility issue.

In self host vaultwarden and it's great with my passkeys and very convenient.

[–] MonkderVierte@lemmy.zip 1 points 1 day ago (1 children)

Hosting? Passkeys is the thing with the Aegis app, no?

[–] fushuan@lemmy.blahaj.zone 11 points 1 day ago (1 children)

No, that's MFA, the rotating number code thing. Passkeys are another thing.

[–] neutronbumblebee@aussie.zone 6 points 1 day ago

Hardware keys are nice but expensive solutions. I'd love to convince my boss we should have them for all senior people plus sensitive roles like accounts and HR. Currently liking the yubikey nano, although its a pain if I forget it. At least I'm not dependant on a third party service.

[–] Forsho@sh.itjust.works 6 points 1 day ago

I agree with this article, i think all points mde are valid and true.

But is there a downside for using mozzila password manager? (other than being in the cloud) I think It allows you to sync your passwords and login information accross any device you use, it works well for phone apps, websites log in and cross platform credentials (ios, android, linux and webpages)

[–] Anafabula@discuss.tchncs.de 5 points 1 day ago (2 children)

Microsoft & Bitwarden are my only two accounts currently that allowed me to use a physical Yubikey as a passkey and have it work on Firefox + Linux. Bitwarden login with passkey only works in the webapp though, not the browser extension, desktop app or mobile app.

[–] Passerby6497@lemmy.world 2 points 1 day ago (1 children)

Bitwarden login with passkey only works in the webapp though, not the browser extension, desktop app or mobile app.

Can't confirm, my yubikey is my 2nd factor for bitwarden and I login with it on both my phone and web browsers

[–] Anafabula@discuss.tchncs.de 1 points 1 day ago

It works as second factor, yes. It does for many services, but using it for actually passwordless passkey login doesn't work for most services with my yubikey.

[–] Tehhund@lemmy.world 3 points 1 day ago (2 children)

Bitwarden login with passkey only works in the webapp though, not the browser extension, desktop app or mobile app.

I'm confused by this — I use passkeys stored in Bitwarden and they work fine in the browser extension and mobile app (I don't use the desktop app often so IDK). Are there particular sites that it doesn't work with?

[–] W98BSoD@lemmy.dbzer0.com 8 points 1 day ago

I think they mean logging into Bitwarden with a physical passkey.

[–] Anafabula@discuss.tchncs.de 3 points 1 day ago

I mean logging into the bitwarden account with the yubikey. Passkeys stored in bitwarden are usually accepted

[–] Aatube@lemmy.dbzer0.com 1 points 1 day ago

I still feel like phishing prevention alone justifies passkeys enough

load more comments
view more: ‹ prev next ›