@nekodojo wrote:

"Can people stop breathlessly reporting “deficiencies” where you already compromised a system using something unrelated to #Passkeys like it’s a big problem?"

I'll stop reporting such issues once idiots stop suggesting passkeys are safe *even* if endpoints are compromised because private keys are in an uncrackable vaults and copystealing public key is pointless (even if some worry about QC) _and_ no certificates get issued to malicious fake websites _and_ Apple and Google fix their shit (*).

(*) If only you were interested in reading about passkey shortcomings I would have written about it - again.

The problem at hand: evangelical techsolutionists believing in "flawless" tech who whine "don't dare to negatively write about my darlings!"

@patrickcmiller @tychotithonus

#Passkeys #InfoSec #NotShuttingTFU #TechSolutionism #TechSolutionists

So take the #TechSolutionists seriously - & literally, because a lot of them will literally try to do what they say they will.
& especially, keep track of what they say they're trying to do. #TESCREAL is a real thing that increasingly really matters, bundling up & extending toxic #TechnoOptimism, #TechSolutionism, #Longtermism, #EffectiveAltruism & a lot of other dangerous #MagicalThinking.
This thread's a good start:
https://mastodon.social/@blogdiva/111248660039613908