Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Looks like they're beginning to work on it as we speak, how is this not supposed to be proven as stupid as possible by now :\

>At the moment, export/import is not part of the "Passkey" standard. The FIDO Alliance has a draft of the Credential Exchange Protocol that would allow such actions.

If it's already a standard, and it's that deeply faulty because it's been brain-dead since the beginning, then for a user having valuable data, they may be best advised to run the other way forever. Simple.

When you have an alliance of previous competitors and they are either incompetent or user-hostile enough from the beginning to leave out the most important factor in recovering from disaster -- personal backup & recovery -- I would want to wait a good ten years until after everyone as untrustworthy as that has been banished from any security work that could be the least bit consequential.

You can't have adequate security with untrustworthy people building the foundation no matter what they say otherwise.

People are the real problem, but clueless "security" people with initiatives this half-baked are more of a threat to average users' valuable data than millions of other clueless users are.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: