Skip to content

Comment on Passwords are obsolete

Comments

Scenario Heartbleed 2

- People heed the advice of this author, and soon all passwords are abolished, replaced with email auth.

- Of course, emails still have a password, as you can't email auth an email.

- Heartbleed 2 happens, hackers focus on Heartbleeding email services.

- For every email password you get, now you have complete control over this person's life, as all services are linked to it for auth.

- Security experts start proposing that you have a separate email for every email auth service, and every email has a separate password, so you can isolate damage.

- Result: previously you had N passwords for N services and 1 email. Now you have N passwords for N services and N emails.

Yay for "improvement"!

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.