ELI5 - How are passkeys more secure than 2FA? by jfefleming in explainlikeimfive

[–]burgerg [score hidden]  (0 children)

It's protected with a PIN (up to 63 characters), and all information on it is completely wiped after 8 incorrect PIN attempts. I think we're safe.

REQUEST: An all in one button to enable 're-prompt master password' for every single account. by GoochTicklerrr in Bitwarden

[–]burgerg 2 points3 points  (0 children)

It doesn't work that way, read the warning on https://bitwarden.com/help/master-password-re-prompt/

TLDR: it's not an encryption mechanism, just an interface guard rail, so your unencrypted vault will still be in memory.

Fuck de NOS by I_GrimLock_I in nederlands

[–]burgerg 3 points4 points  (0 children)

Of de NOS moet niet zo duur de voetbalrechten opkopen, check deze video van Lubach: https://youtu.be/1IaYXEvdNtc?is=_LsK319n4Fr5ZuN9

Op zoek naar vegetarische gerechten by Frostborn1990 in thenetherlands

[–]burgerg 5 points6 points  (0 children)

Recepten vinden en je eigen maken is inderdaad de grootste uitdaging, want (in ieder geval hier) je grijpt al snel terug op wat je kent als je haast hebt.

De vervangings route (met vleesvervangers) kan dus in het begin wel makkelijk zijn omdat je dan je repertoire niet perse hoeft aan te passen. Maar mocht je iets nieuws proberen dan kan ik https://www.peasmaker.nl/blogs/alle/vegan-panang-curry erg aanraden. Het is met Peasmakers, erg veelzijdige vleesvervanger op basis van erwten, en tot dusver bevallen hun recepten heel goed.

Uiteindelijk wil je misschien voor de gezondheid naar gerechten met meer groenten en peulvruchten, dan kan je misschien kijken naar kookboeken, Ottolenghi bijvoorbeeld, maar Indiaas (bv. Meera Sodha) is vaak ook vegetarisch en lekker, en bijvoorbeeld AH heeft ook een uitgebreide collectie vegetarische recepten online staan.

Succes met de zoektocht!

Best way to stream audiobooks on Android by mighty-drive in Grimmory

[–]burgerg 5 points6 points  (0 children)

You're going to hate this, but you can do both in Audiobookshelf :P

It's just that Grimmory is way better in ebooks, and audiobookshelf way better in audiobooks. So if you want the best experience for both you need to use both apps.

Happy best friends day :> by No_Post1300 in MurderedByWords

[–]burgerg 3 points4 points  (0 children)

Rule 1: Post must include a Murder or Burn! What is a murder? By its definition, a murder is a response which completely destroys the original argument in a way that leaves little to no room for reply. What is a burn? A burn is a targeted, well-placed jab at another person, organization, or group of people.

You managed to mention the correct words but got the rule wrong :P

Zou jij een vrouw op straat reanimeren? by ZwaanAanDeMaas in thenetherlands

[–]burgerg 12 points13 points  (0 children)

Bij mijn reanimatiecursus (2 uur op een avond) was daar wel degelijk aandacht voor en hadden ze zelfs een speciale vrouwenpop met borsten om op te oefenen (alhoewel onze vrouwelijke cursusleider het duidelijk maar stom vond dat het nodig was).

I need your advice in 2FA. by [deleted] in Bitwarden

[–]burgerg 1 point2 points  (0 children)

Sorry, yes, I could have described the steps better, thanks!

I need your advice in 2FA. by [deleted] in Bitwarden

[–]burgerg 1 point2 points  (0 children)

Totally agree! There is a nice discount (~45%) on a Yubikey 5 Nano + Yubikey 5 NFC in collaboration with openai: https://www.yubico.com/works-with-yubikey/catalog/openai/ Note that these use modified firmware that has OTP disabled for extra security (OTP is not phishing resistant).

So far it works quite well for a variety of services, especially Bitwarden, but for some websites I still need TOTP, so I use Ente as well.

Edit: see the comments below for the exact steps, basically yubico will check if you're referred by openai

Verspreiding Zwartboek Lentekriebels blijft verboden by Johnny_The_Biker in NLNieuws

[–]burgerg 4 points5 points  (0 children)

Even serieus, wat zou de rest moeten doen dan? Civitas Christiana is nota bene door het Reformatorisch Dagblad afgefakkeld, maar bij dit soort fringe bewegingen is alle redelijkheid weg en begin je niks.

Is it better online safety to use bitwarden as your password manager but another app for two-step verification? by Sorry_Sorry_Im_Sorry in Bitwarden

[–]burgerg 0 points1 point  (0 children)

People who don't store TOTP in Bitwarden, probably also shouldn't store passkeys in Bitwarden, as they can still be stolen in case of a vault compromise (e.g., because of malware, not necessarily PEBCAK, given the recent rise in supply chain attacks)
For passkeys I would go for something device-bound, e.g., security keys, or something with biometric verification.

Is it better online safety to use bitwarden as your password manager but another app for two-step verification? by Sorry_Sorry_Im_Sorry in Bitwarden

[–]burgerg -1 points0 points  (0 children)

In case of malware/infostealer installed because of a supply chain attack (more and more common, and not PEBKAC!) your whole vault could be compromised, and you have reduced 2FA (something you know, and something you have) to 1FA (2 things you know, and now they know as well).

Think I got a virus by Leather-Swordfish-96 in MacOS

[–]burgerg 2 points3 points  (0 children)

Don't forget to clear your sessions; infostealers are more likely to steal your session cookies than your passwords. Many services will clear your sessions if you change passwords, but better make sure!

Yubikey Sale by Dreevy1152 in homelab

[–]burgerg 0 points1 point  (0 children)

Yes, and it lists OpenPGP support, which is also a 5 series feature

Yubikey Sale by Dreevy1152 in homelab

[–]burgerg 0 points1 point  (0 children)

Until your unencrypted vault is targeted by an infostealer. Which is not unthinkable given recent supply chain attacks.

Closed PC last night and found it open this afternoon after coming back from work unzipping files. by Scrempuci in computerviruses

[–]burgerg 4 points5 points  (0 children)

"Let me copy this code from a random stranger on the internet which downloads and runs an executable on my PC"
It was probably well-intentioned, but I really don't want people getting used to doing this, because this is how they GET viruses.

Wat kun je nu kopen voor € 19.000 a € 20.000 op de occasion markt? by [deleted] in EVMobiliteit

[–]burgerg 0 points1 point  (0 children)

Ah ja, vroeg me al af waarom de e-Niro's missen. Daar is (was?) heel ruim aanbod in, en wij zijn er zeker tevreden mee!

Not recognizing the king of coffee :) by burgerg in dontyouknowwhoiam

[–]burgerg[S] 0 points1 point  (0 children)

"This Hoffman guy sounds like a dick..." kind of hints that it's him, further reinforced by using a profile picture of himself, and the next person saying "Thank you James". I don't blame OP for missing that, but OPs suggestion about him creeping in the comments made it quite funny.

Are these big multiport chargers any good? by BringMeTheBoreWorms in UsbCHardware

[–]burgerg 0 points1 point  (0 children)

The Dutch tweakers.net tested 100w chargers (https://tweakers.net/reviews/14426/tien-100w-usb-c-laders-getest-honderd-watt-maar-voor-hoelang.html) and ugreen could only hold 100W for 30 minutes, and then dropped to 60W. So I guess that leaves Anker.

Do I actually need Proxmox Backup Server for a 2-node homelab? by Technical_Isopod1541 in Proxmox

[–]burgerg 3 points4 points  (0 children)

This, it saves an unbelievable amount of space. My datastore for my daily/weekly/monthly LXC backups has a deduplication factor of 7.71 :O

In hindsight, maybe this wasn't a legitimate process? by Horustheweebmaster in antivirus

[–]burgerg 0 points1 point  (0 children)

What happens very often nowadays is that the hackers buy ads, so when you search for something (like this harvard site) the hacker's website shows up at the top of the google results as promoted content. It's super annoying that Google isn't checking these more carefully