• xylogx@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 days ago

    I love Lemmy and Voyager and the Fediverse. That said, if it were to become mainstream I forsee some problems. The fact that the login relies on only passwords is pretty terrible. Also, this makes the service vulnerable to bots, sock puppet accounts, brigading, etc.

    • CubitOom@infosec.pub
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 days ago

      What would you propose replace passwords to not be susceptible to those things?

      I personally like how secure and non intrusive passwords are, especially when using a self hosted password manager synced with git.

      • 4am@lemm.ee
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 days ago

        Passkeys are much better. Unlike what FAANG companies want you to believe, they do not have to be tied to a device. Use a password manager that supports them (BitWarden) and pretty much never get hacked again because of a password. Website doesn’t need to store anything that an attacker can use. No downside.