Post Ac0TdgueLT9YLuZ2wa by The_Asshat@infosec.exchange
(DIR) More posts by The_Asshat@infosec.exchange
(DIR) Post #Ac0NbOpI1IGZxDa5my by mttaggart@infosec.town
2023-11-20T17:47:04.301Z
0 likes, 0 repeats
Some bangers in here: https://github.com/0x90n/InfoSec-Black-Friday
(DIR) Post #Ac0PZzQdA7vGnrVE8W by The_Asshat@infosec.exchange
2023-11-20T18:09:08Z
1 likes, 0 repeats
@mttaggart I may be picking up some more yubikeys…
(DIR) Post #Ac0TaY6cdHreAZfM24 by sanecito@infosec.town
2023-11-20T18:48:34.215Z
1 likes, 0 repeats
@The_Asshat@infosec.exchange @mttaggart@infosec.town Serious question: Is there much value in hardware tokens like Yubikeys or Nitrokeys at a general consumer level with Passkey support rollout happening? The main exclusive killer usecase I can think of is securing LUKS encryption with one
(DIR) Post #Ac0TdJKM2FSDCgPEg4 by mttaggart@infosec.town
2023-11-20T18:54:37.550Z
0 likes, 0 repeats
@sanecito @The_Asshat@infosec.exchange Show me the Linux system that has hardware Passkey support.Yes, the Yubikey still has value.
(DIR) Post #Ac0TdgueLT9YLuZ2wa by The_Asshat@infosec.exchange
2023-11-20T18:52:51Z
1 likes, 0 repeats
@sanecito @mttaggart I still think so. Personally speaking, there’s a number of services I use that can still take yubikeys that don’t have passkey support yet. It’s also not a guarantee that those and other services will migrate to passkeys any time soon.
(DIR) Post #Ac0WcsDl7FFQzsnvBw by sanecito@infosec.town
2023-11-20T19:24:12.099Z
1 likes, 0 repeats
@mttaggart @The_Asshat@infosec.exchange Valid points all; appreciate the quick comments. I know both Chromium, and Firefox, as well as credential vaults like BitWarden support Passkeys at this point, so in hindsight, I am likely naively optimistic in both Linux and more websites at the urging of Apple, Google, and Microsoft getting Passkey support by next Black Friday
(DIR) Post #Ac0Wfya3vXAhaeiRc0 by mttaggart@infosec.town
2023-11-20T19:28:43.291Z
0 likes, 0 repeats
@sanecito @The_Asshat@infosec.exchange It's a real disappointment! I want very badly to enable passkey access to lots of accounts, but it's not an option as long as my Linux computer has no way to utilize it.