SMS text messages were already the weakest link securing just about anything online, mainly because there are tens of thousands of people (many of them low-paid mobile store employees) who can be tricked or bribed into swapping control over aโฆ
I was genuinely surprised to see Twitter doing something good under Elon's leadership. A second later once again, I was genuinely surprised to see that you can actually fuck up 2fa so badly
Journalists that use Twitter will be like "What's a Yubikey? What the hell is Google Authenticator?" THIS is the main problem. No one's gonna educate them about the alternative 2FA and it will be like talking to a brick wall to those that try.
I saw this video yesterday, And then I thought, why not. The guy has a good voice, with lots of pain in it. So here ... after 4 hours of timepass, I give you...
who knew March 20th would be another day so many of us just give up on that tiresome place. It's depressing to go on their right now, by March we will have moved on. #Twitter
TOTP and U2F/WebAuthn keys work for free and are much more secure. Everyone should stop using SMS 2FA. More info in this great article. krebsonsecurity.com/2021/03/caโฆ #infosec
SMS text messages were already the weakest link securing just about anything online, mainly because there are tens of thousands of people (many of them low-paid mobile store employees) who can be tricked or bribed into swapping control over aโฆ
Why use SMS at all though, if you still have the option of a hardware security key or 2FA authentication app, you're considerably better off with the latter two, rather than having your token tied to your phone number and delivered to you in plain text. SMS should only be used for 2FA if no better option exists.
Eniko (moved โก gamedev.place)
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Milk Tray Man
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Gallen
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Joshix
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •grosskopfgames
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Fabianใใใกใใขใณใ๐ณ๏ธโ๐
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •If thats SMS, it should be removed alltogether
krebsonsecurity.com/2021/03/caโฆ
So this would be actually a good thing.
Can We Stop Pretending SMS Is Secure Now?
krebsonsecurity.comChristian :apple: :idle:
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Anton
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Paul Taylor
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Jack Zhang (๐น๐ฆ Raccoon)
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Splatsune 3
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Madiator2011 :verified:
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •@Hovedorganet has moved
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Atrapado๐ด๐ซ
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •I just shot myself remix ;)
YouTubeOto ล ลฅรกva
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Lazarou Monkey Terror ๐๐๐
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •It's depressing to go on their right now, by March we will have moved on.
#Twitter
:verified8:
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Can We Stop Pretending SMS Is Secure Now?
krebsonsecurity.comRastal
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Cory Sanin
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •Sparr
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •rluders
in reply to Liam @ GamingOnLinux ๐ง๐ฎ • • •