Exactly, massive IT failure. Unique passwords are required and should be used everywhere. Yet without a way to generate or access them, you end up with this dude, and I don’t blame them one bit!
Passkeys are actually better for situations like this. (And others, I’m just not a universal fan for every possible use case.)
Passkeys are actually better for situations like this
Is that like when you have a really long unique string of random characters stored on a flash drive and you use it to unlock your computer instead of a password?
I think those can be beneficial cause if there’s a data breach and all your passwords are compromised, they wouldn’t get your passkey, right? It would require physical access to the USB.
But the downside is then you have your passkey on a USB, and if someone gets their hands on it they can copy it and use it.
So I think a hybrid approach is best (when it’s not overkill), and have your passkey on an encrypted, password-protected flash drive so that it requires both physical access and knowledge of the password.
But unless you’re in government, healthcare, or deep in some industry where absolute confidentiality is supremely critical, it’s probably overkill
Exactly, massive IT failure. Unique passwords are required and should be used everywhere. Yet without a way to generate or access them, you end up with this dude, and I don’t blame them one bit!
Passkeys are actually better for situations like this. (And others, I’m just not a universal fan for every possible use case.)
Is that like when you have a really long unique string of random characters stored on a flash drive and you use it to unlock your computer instead of a password?
I think those can be beneficial cause if there’s a data breach and all your passwords are compromised, they wouldn’t get your passkey, right? It would require physical access to the USB.
But the downside is then you have your passkey on a USB, and if someone gets their hands on it they can copy it and use it.
So I think a hybrid approach is best (when it’s not overkill), and have your passkey on an encrypted, password-protected flash drive so that it requires both physical access and knowledge of the password.
But unless you’re in government, healthcare, or deep in some industry where absolute confidentiality is supremely critical, it’s probably overkill