[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/g/ - Technology

Name
Options
Comment
Verification
4chan Pass users can bypass this verification. [Learn More] [Login]
File
  • Please read the Rules and FAQ before posting.
  • You may highlight syntax and preserve whitespace by using [code] tags.

08/21/20New boards added: /vrpg/, /vmg/, /vst/ and /vm/
05/04/17New trial board added: /bant/ - International/Random
10/04/16New board for 4chan Pass users: /vip/ - Very Important Posts
[Hide] [Show All]


Janitor acceptance emails will be sent out over the coming weeks. Make sure to check your spam folder!


[Advertise on 4chan]


>>
Not getting hacked
>>
Virtually everyone has implemented it because hard locking users to a physical device prevents distributed attacks on servers, usually related to phishing.

Users had only one job, chose a password with sufficient entropy, don't reuse passwords. Users couldn't manage that. We enforce it at work and almost half our users lose their creds every year. Almost half. They refuse to accept the fundimental agreement, that they are responsible, for their account.

At that point what can we even do? If users don't even theoretically accept responsibility for creds they can just fuck off.
>>
>>109082973
So password managers can charge you for the convenience of autofilling your 2fa code for a problem they introduced.
>>
>>109082978
Yeah that
>>
>>109082973
Legal backdoor. When ever they need to get into your email/anything account, they sim swap your SIM to the fed phone, sms verify, then sim swap you back before you notice.
>>
>>109082973
if someone knows your password, they still can't login
>>
The better way is to use passkeys.
>>
>>109082973
Easier goycattle surveillance
>>
>>109083079
That's what a password is for. Or at least used to be.
>>
>>109083011
>lose their creds every year.
otp isn't something you have though, its something you know. just obfuscated.
it has ZERO impact on phishing attacks as anyone with a brain can conclude.
i store my hmac key in exactly the same place as my password.
fuck ops cunts lol.

> that they are responsible, for their account.
then don't enforce mfa. or you are lying? lol. retard.



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.