zlacker

[parent] [thread] 3 comments
1. diggan+(OP)[view] [source] 2025-05-21 12:56:37
If you're saying something is less secure because the users might suffer from "severe exhaustion", then I know that there aren't any proper arguments for migrating to it. Thanks for confirming I can continue using OTP without feeling like I might be missing something :)
replies(2): >>skydha+S4 >>simonw+wE
2. skydha+S4[view] [source] 2025-05-21 13:32:04
>>diggan+(OP)
> If you're saying something is less secure because the users might suffer from "severe exhaustion"

Something "$5 wrench"

https://xkcd.com/538/

3. simonw+wE[view] [source] 2025-05-21 16:57:34
>>diggan+(OP)
Passkeys genuinely do protect against severe exhaustion attacks.
replies(1): >>diggan+HA2
◧◩
4. diggan+HA2[view] [source] [discussion] 2025-05-22 11:21:16
>>simonw+wE
Yeah, but they genuinely also prevent you from moving away from companies in the process of enshittification, since the whole export/import thing seemingly hasn't been figured out or even less been deployed yet.

Besides, if you ignore security alarm-bells going off when exhausted, I'm not sure what solution can 100% protect you.

[go to top]