• CubitOom@infosec.pub
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    15 hours ago

    Well again, the claim was that somehow passkeys would stop Lemmy from being flooded by bots.

    So in that situation, we aren’t talking about hacking. We are simply talking about if a login could be triggered programmatically. So if Lemmy required passkeys to be used instead of passwords. And if the passkeys required scanning a QR code to sign in. I imagine It would provide minimal disruption to an automated login.

    Now if the passkeys somehow enforced a real human to do something that only a human could do, then yes it would stop an automated registration/login. However if it’s possible to automate then it wouldn’t stop bots.