home.social

#2factorauthentication — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #2factorauthentication, aggregated by home.social.

  1. #HotTake #2FA #codes #MultiFactor and #2FactorAuthentication centralizes what it is meant to isolate at the #app level. This is the exact same chain process of #inshitification and #IdentityVerification that targets #https as a #web #protocol at the expense of #centralized databases for #hackers to exploit.

  2. #HotTake #2FA #codes #MultiFactor and #2FactorAuthentication centralizes what it is meant to isolate at the #app level. This is the exact same chain process of #inshitification and #IdentityVerification that targets #https as a #web #protocol at the expense of #centralized databases for #hackers to exploit.

  3. I love how the one website that uses a simple four digit #2FactorAuthentication code (which should be plenty for a time-boxed single-use password) is the investment bank asking me to confirm who I am before wiring tens of thousands of dollars. Meanwhile, I need to remember 6-8 digits to type into some random streaming platform that costs $10 a month.

  4. I love how the one website that uses a simple four digit #2FactorAuthentication code (which should be plenty for a time-boxed single-use password) is the investment bank asking me to confirm who I am before wiring tens of thousands of dollars. Meanwhile, I need to remember 6-8 digits to type into some random streaming platform that costs $10 a month.

  5. I love how the one website that uses a simple four digit #2FactorAuthentication code (which should be plenty for a time-boxed single-use password) is the investment bank asking me to confirm who I am before wiring tens of thousands of dollars. Meanwhile, I need to remember 6-8 digits to type into some random streaming platform that costs $10 a month.

  6. I love how the one website that uses a simple four digit #2FactorAuthentication code (which should be plenty for a time-boxed single-use password) is the investment bank asking me to confirm who I am before wiring tens of thousands of dollars. Meanwhile, I need to remember 6-8 digits to type into some random streaming platform that costs $10 a month.

  7. What is your preferred method of #2factorauthentication ? 🔑📱

    Tuta offers full support for #U2F & #TOTP to keep your account secure! 🔒

    👉 tuta.com/blog/posts/why-u2f-is

  8. What is your preferred method of #2factorauthentication ? 🔑📱

    Tuta offers full support for #U2F & #TOTP to keep your account secure! 🔒

    👉 tuta.com/blog/posts/why-u2f-is

  9. What is your preferred method of #2factorauthentication ? 🔑📱

    Tuta offers full support for #U2F & #TOTP to keep your account secure! 🔒

    👉 tuta.com/blog/posts/why-u2f-is

  10. What is your preferred method of #2factorauthentication ? 🔑📱

    Tuta offers full support for #U2F & #TOTP to keep your account secure! 🔒

    👉 tuta.com/blog/posts/why-u2f-is

  11. What is your preferred method of #2factorauthentication ? 🔑📱

    Tuta offers full support for #U2F & #TOTP to keep your account secure! 🔒

    👉 tuta.com/blog/posts/why-u2f-is

  12. Do banks and others realise that "Two factor authentication" no longer works now that text / SMS messages flash up on the screen of a computer, like this.
    #bank #lloyds #scam #fraud #2FactorAuthentication

  13. Do banks and others realise that "Two factor authentication" no longer works now that text / SMS messages flash up on the screen of a computer, like this.
    #bank #lloyds #scam #fraud #2FactorAuthentication

  14. Do banks and others realise that "Two factor authentication" no longer works now that text / SMS messages flash up on the screen of a computer, like this.

  15. My bank urges me to use their newest app, "cause it's more secure".

    Can someone explain to me, how using an app and #2FactorAuthentication #twofactorauthentication on the same device (the phone) is more secure than using the app/website on a computer and 2FA on the phone?

    Do I miss anything? :blobthinking:

    (I also asked my bank :blobgrin: no answer so far...)

  16. My bank urges me to use their newest app, "cause it's more secure".

    Can someone explain to me, how using an app and #2FactorAuthentication #twofactorauthentication on the same device (the phone) is more secure than using the app/website on a computer and 2FA on the phone?

    Do I miss anything? :blobthinking:

    (I also asked my bank :blobgrin: no answer so far...)

  17. What are people using for a 2FA app these days on their iPhone/Apple Watch? I’m going to have to get rid of Okta Verify because they just discontinued their excellent Apple Watch app. #okta #2FactorAuthentication #2fa #AppleWatch #iPhone

  18. What are people using for a 2FA app these days on their iPhone/Apple Watch? I’m going to have to get rid of Okta Verify because they just discontinued their excellent Apple Watch app. #okta #2FactorAuthentication #2fa #AppleWatch #iPhone

  19. What are people using for a 2FA app these days on their iPhone/Apple Watch? I’m going to have to get rid of Okta Verify because they just discontinued their excellent Apple Watch app. #okta #2FactorAuthentication #2fa #AppleWatch #iPhone

  20. What are people using for a 2FA app these days on their iPhone/Apple Watch? I’m going to have to get rid of Okta Verify because they just discontinued their excellent Apple Watch app. #okta #2FactorAuthentication #2fa #AppleWatch #iPhone

  21. 🎬 So this scam #2FA app is using custom product pages of Apple Search Ads to trick users. It has different campaigns per search keywords. When searching for "Microsoft Authenticator", it shows screenshots highlighting "Microsoft". and when searching for "Google Authenticator", it highlights "Google". Watch the video 🤯

    It's worth noting that custom product pages need to be approved by App Store Connect and Apple Search Ads.
    This app steals 2FA secrets and its model is very suspicious as noted below.

    Friendly reminder: Mastodon uses no algorithms for discovering posts. The only way to spread the word is by boosting posts. If you think this post is helpful, boost it to reach others. Thank you 🙏
    #Privacy #Apple #iOS #cybersecuritytips #infosec #cybersecurity #security #2FactorAuthentication

  22. 🎬 So this scam #2FA app is using custom product pages of Apple Search Ads to trick users. It has different campaigns per search keywords. When searching for "Microsoft Authenticator", it shows screenshots highlighting "Microsoft". and when searching for "Google Authenticator", it highlights "Google". Watch the video 🤯

    It's worth noting that custom product pages need to be approved by App Store Connect and Apple Search Ads.
    This app steals 2FA secrets and its model is very suspicious as noted below.

    Friendly reminder: Mastodon uses no algorithms for discovering posts. The only way to spread the word is by boosting posts. If you think this post is helpful, boost it to reach others. Thank you 🙏
    #Privacy #Apple #iOS #cybersecuritytips #infosec #cybersecurity #security #2FactorAuthentication

  23. 🎬 So this scam #2FA app is using custom product pages of Apple Search Ads to trick users. It has different campaigns per search keywords. When searching for "Microsoft Authenticator", it shows screenshots highlighting "Microsoft". and when searching for "Google Authenticator", it highlights "Google". Watch the video 🤯

    It's worth noting that custom product pages need to be approved by App Store Connect and Apple Search Ads.
    This app steals 2FA secrets and its model is very suspicious as noted below.

    Friendly reminder: Mastodon uses no algorithms for discovering posts. The only way to spread the word is by boosting posts. If you think this post is helpful, boost it to reach others. Thank you 🙏
    #Privacy #Apple #iOS #cybersecuritytips #infosec #cybersecurity #security #2FactorAuthentication

  24. 🎬 So this scam #2FA app is using custom product pages of Apple Search Ads to trick users. It has different campaigns per search keywords. When searching for "Microsoft Authenticator", it shows screenshots highlighting "Microsoft". and when searching for "Google Authenticator", it highlights "Google". Watch the video 🤯

    It's worth noting that custom product pages need to be approved by App Store Connect and Apple Search Ads.
    This app steals 2FA secrets and its model is very suspicious as noted below.

    Friendly reminder: Mastodon uses no algorithms for discovering posts. The only way to spread the word is by boosting posts. If you think this post is helpful, boost it to reach others. Thank you 🙏
    #Privacy #Apple #iOS #cybersecuritytips #infosec #cybersecurity #security #2FactorAuthentication

  25. 🎬 So this scam #2FA app is using custom product pages of Apple Search Ads to trick users. It has different campaigns per search keywords. When searching for "Microsoft Authenticator", it shows screenshots highlighting "Microsoft". and when searching for "Google Authenticator", it highlights "Google". Watch the video 🤯

    It's worth noting that custom product pages need to be approved by App Store Connect and Apple Search Ads.
    This app steals 2FA secrets and its model is very suspicious as noted below.

    Friendly reminder: Mastodon uses no algorithms for discovering posts. The only way to spread the word is by boosting posts. If you think this post is helpful, boost it to reach others. Thank you 🙏
    #Privacy #Apple #iOS #cybersecuritytips #infosec #cybersecurity #security #2FactorAuthentication

  26. The rogue 2FA app that steals scanned secrets is now ranked 18 on the German App Store for the productivity category. No wonder! The app disguises as a Microsoft app. It is the top hit when you search for "Microsoft Authenticator" and the developer has updated the screenshots in the ad card to highlight the word "Microsoft". Surprisingly, the product page of the app shows different screenshots with the word "Microsoft" removed.
    The app now has 1.2K reviews, as opposed to 18 when we first addressed the app.

    🙏 Boosting this post will help spread the word. Thank you!

    #privacy #security #2FactorAuthentication #iOS #infosec

  27. The rogue 2FA app that steals scanned secrets is now ranked 18 on the German App Store for the productivity category. No wonder! The app disguises as a Microsoft app. It is the top hit when you search for "Microsoft Authenticator" and the developer has updated the screenshots in the ad card to highlight the word "Microsoft". Surprisingly, the product page of the app shows different screenshots with the word "Microsoft" removed.
    The app now has 1.2K reviews, as opposed to 18 when we first addressed the app.

    🙏 Boosting this post will help spread the word. Thank you!

    #privacy #security #2FactorAuthentication #iOS #infosec

  28. The rogue 2FA app that steals scanned secrets is now ranked 18 on the German App Store for the productivity category. No wonder! The app disguises as a Microsoft app. It is the top hit when you search for "Microsoft Authenticator" and the developer has updated the screenshots in the ad card to highlight the word "Microsoft". Surprisingly, the product page of the app shows different screenshots with the word "Microsoft" removed.
    The app now has 1.2K reviews, as opposed to 18 when we first addressed the app.

    🙏 Boosting this post will help spread the word. Thank you!

    #privacy #security #2FactorAuthentication #iOS #infosec

  29. The rogue 2FA app that steals scanned secrets is now ranked 18 on the German App Store for the productivity category. No wonder! The app disguises as a Microsoft app. It is the top hit when you search for "Microsoft Authenticator" and the developer has updated the screenshots in the ad card to highlight the word "Microsoft". Surprisingly, the product page of the app shows different screenshots with the word "Microsoft" removed.
    The app now has 1.2K reviews, as opposed to 18 when we first addressed the app.

    🙏 Boosting this post will help spread the word. Thank you!

    #privacy #security #2FactorAuthentication #iOS #infosec

  30. The rogue 2FA app that steals scanned secrets is now ranked 18 on the German App Store for the productivity category. No wonder! The app disguises as a Microsoft app. It is the top hit when you search for "Microsoft Authenticator" and the developer has updated the screenshots in the ad card to highlight the word "Microsoft". Surprisingly, the product page of the app shows different screenshots with the word "Microsoft" removed.
    The app now has 1.2K reviews, as opposed to 18 when we first addressed the app.

    🙏 Boosting this post will help spread the word. Thank you!

    #privacy #security #2FactorAuthentication #iOS #infosec

  31. Hello, World! This is my #introduction post. I'm me, you're you (at least I hope so), and I'm glad to be here with you.

    I talk about politics, #infosec, bad jokes, memes, and the terrible things we're expected to just accept in the name of capitalism and making the rich richer. Black Lives Matter, trans rights are human rights, sex work is work. SWERFs, TERFs, Nazis, and their apologists need not apply.

    I'm an infosec generalist, working on securing both back-end infra and client devices. #ZeroTrust, #2FactorAuthentication, #certificates (both TLS and SSH), are major focus areas for me.

    I'm also a reasonable #software #developer (just don't ask me to pass a software engineering interview loop) and a pretty good #Linux and #OpenBSD sysadmin. I also know my way around #database systems, preferably #PostgreSQL or #MySQL.

    I like to think I'm reasonably competent at what I do. My employer has agreed for over 15 years at this point, for whatever that's worth.

    What would I say it is I do here? When I'm not guarding my stapler, I like to read fantasy novels and I play #GenshinImpact and #HonkaiStarRail. I'm also making my way through #TearsOfTheKingdom slowly. No multi-player games for me, not even tabletop anymore, but I might watch if you're streaming.

  32. Hello, World! This is my #introduction post. I'm me, you're you (at least I hope so), and I'm glad to be here with you.

    I talk about politics, #infosec, bad jokes, memes, and the terrible things we're expected to just accept in the name of capitalism and making the rich richer. Black Lives Matter, trans rights are human rights, sex work is work. SWERFs, TERFs, Nazis, and their apologists need not apply.

    I'm an infosec generalist, working on securing both back-end infra and client devices. #ZeroTrust, #2FactorAuthentication, #certificates (both TLS and SSH), are major focus areas for me.

    I'm also a reasonable #software #developer (just don't ask me to pass a software engineering interview loop) and a pretty good #Linux and #OpenBSD sysadmin. I also know my way around #database systems, preferably #PostgreSQL or #MySQL.

    I like to think I'm reasonably competent at what I do. My employer has agreed for over 15 years at this point, for whatever that's worth.

    What would I say it is I do here? When I'm not guarding my stapler, I like to read fantasy novels and I play #GenshinImpact and #HonkaiStarRail. I'm also making my way through #TearsOfTheKingdom slowly. No multi-player games for me, not even tabletop anymore, but I might watch if you're streaming.

  33. Hello, World! This is my #introduction post. I'm me, you're you (at least I hope so), and I'm glad to be here with you.

    I talk about politics, #infosec, bad jokes, memes, and the terrible things we're expected to just accept in the name of capitalism and making the rich richer. Black Lives Matter, trans rights are human rights, sex work is work. SWERFs, TERFs, Nazis, and their apologists need not apply.

    I'm an infosec generalist, working on securing both back-end infra and client devices. #ZeroTrust, #2FactorAuthentication, #certificates (both TLS and SSH), are major focus areas for me.

    I'm also a reasonable #software #developer (just don't ask me to pass a software engineering interview loop) and a pretty good #Linux and #OpenBSD sysadmin. I also know my way around #database systems, preferably #PostgreSQL or #MySQL.

    I like to think I'm reasonably competent at what I do. My employer has agreed for over 15 years at this point, for whatever that's worth.

    What would I say it is I do here? When I'm not guarding my stapler, I like to read fantasy novels and I play #GenshinImpact and #HonkaiStarRail. I'm also making my way through #TearsOfTheKingdom slowly. No multi-player games for me, not even tabletop anymore, but I might watch if you're streaming.

  34. Hello, World! This is my #introduction post. I'm me, you're you (at least I hope so), and I'm glad to be here with you.

    I talk about politics, #infosec, bad jokes, memes, and the terrible things we're expected to just accept in the name of capitalism and making the rich richer. Black Lives Matter, trans rights are human rights, sex work is work. SWERFs, TERFs, Nazis, and their apologists need not apply.

    I'm an infosec generalist, working on securing both back-end infra and client devices. #ZeroTrust, #2FactorAuthentication, #certificates (both TLS and SSH), are major focus areas for me.

    I'm also a reasonable #software #developer (just don't ask me to pass a software engineering interview loop) and a pretty good #Linux and #OpenBSD sysadmin. I also know my way around #database systems, preferably #PostgreSQL or #MySQL.

    I like to think I'm reasonably competent at what I do. My employer has agreed for over 15 years at this point, for whatever that's worth.

    What would I say it is I do here? When I'm not guarding my stapler, I like to read fantasy novels and I play #GenshinImpact and #HonkaiStarRail. I'm also making my way through #TearsOfTheKingdom slowly. No multi-player games for me, not even tabletop anymore, but I might watch if you're streaming.

  35. Hello, World! This is my #introduction post. I'm me, you're you (at least I hope so), and I'm glad to be here with you.

    I talk about politics, #infosec, bad jokes, memes, and the terrible things we're expected to just accept in the name of capitalism and making the rich richer. Black Lives Matter, trans rights are human rights, sex work is work. SWERFs, TERFs, Nazis, and their apologists need not apply.

    I'm an infosec generalist, working on securing both back-end infra and client devices. #ZeroTrust, #2FactorAuthentication, #certificates (both TLS and SSH), are major focus areas for me.

    I'm also a reasonable #software #developer (just don't ask me to pass a software engineering interview loop) and a pretty good #Linux and #OpenBSD sysadmin. I also know my way around #database systems, preferably #PostgreSQL or #MySQL.

    I like to think I'm reasonably competent at what I do. My employer has agreed for over 15 years at this point, for whatever that's worth.

    What would I say it is I do here? When I'm not guarding my stapler, I like to read fantasy novels and I play #GenshinImpact and #HonkaiStarRail. I'm also making my way through #TearsOfTheKingdom slowly. No multi-player games for me, not even tabletop anymore, but I might watch if you're streaming.

  36. Why do so few banking apps support TOTP 2 factor authentication? I've found that banking apps either rely on SMS/email for a second factor, or they support TOTP but only through a one-off app that can't be used for other TOTPs. So annoying!

    Anyone know of a bank that lets you use Google Authenticator/Aegis/Authy for a TOTP?

    #security #totp #2FactorAuthentication

  37. Why do so few banking apps support TOTP 2 factor authentication? I've found that banking apps either rely on SMS/email for a second factor, or they support TOTP but only through a one-off app that can't be used for other TOTPs. So annoying!

    Anyone know of a bank that lets you use Google Authenticator/Aegis/Authy for a TOTP?

    #security #totp #2FactorAuthentication

  38. Why do so few banking apps support TOTP 2 factor authentication? I've found that banking apps either rely on SMS/email for a second factor, or they support TOTP but only through a one-off app that can't be used for other TOTPs. So annoying!

    Anyone know of a bank that lets you use Google Authenticator/Aegis/Authy for a TOTP?

    #security #totp #2FactorAuthentication