▲ | junon 4 days ago | ||||||||||||||||||||||||||||||||||
I use a password manager. I was mobile, the autofill stuff isn't installed as I don't use it often on my phone. In 15 years of maintaining OSS, I've never been pwned, phished, or anything of the sort. Thank you for your input :) | |||||||||||||||||||||||||||||||||||
▲ | yawaramin 3 days ago | parent | next [-] | ||||||||||||||||||||||||||||||||||
I'm angry about this. Large megacorps with the budget of medium-sized countries allocate the minimum amount of budget to maintain their auth systems and still allow the use of phishable auth methods. If npm disabled passwords and forced people to use passkeys, this huge problem just disappears tomorrow. But instead, we're left with this mess where ordinary developers are forced to deal with the consequences of getting phished. | |||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||
▲ | sneak 3 days ago | parent | prev | next [-] | ||||||||||||||||||||||||||||||||||
I never copy and paste passwords. Any time you find yourself wanting to do that, alarm bells should be ringing. Password managers can’t help you if you don’t use them properly. Spotify steals (and presumably uploads) your clipboard, as well as other apps. Autofill is your primary defense against phishing, as you (and hopefully some others) learned this week. | |||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||
▲ | ants_everywhere 4 days ago | parent | prev | next [-] | ||||||||||||||||||||||||||||||||||
sounds like you should use it on your phone then | |||||||||||||||||||||||||||||||||||
▲ | bingabingabinga 4 days ago | parent | prev | next [-] | ||||||||||||||||||||||||||||||||||
> In 15 years of maintaining OSS, I've never been pwned, phished, or anything of the sort. Well, until now. | |||||||||||||||||||||||||||||||||||
▲ | typpilol 4 days ago | parent | prev [-] | ||||||||||||||||||||||||||||||||||
I just don't get how you didn't look for an announcement about npm resetting 2fa. Especially when you get a random reset | |||||||||||||||||||||||||||||||||||
|