Re: two factor auth

o1bigtenor <[email protected]>
Newsgroups gmane.mail.imap.cyrus
Message-ID <CAPpdf59-iL4-wnGS-Y7KJqiqeAeyOS64xX9y3dsy-JzsRB9sPQ@mail.gmail.com>
On Mon, Jan 18, 2021 at 1:33 AM Gabriele Bulfon via Info
<[email protected]> wrote:
>
> Sometimes your customer ends up in a situation where stolen passwords allow the thief to redirect bank transactions and loose a lot of money.
> The stolen password may even be strong, but any other kind of phishing technique has revealed it to the thief.
>
> A 2FA or any other kind of "device authorization" may protect you further.
>

Thank you for using the word 'may'!

Have been doing some more research and using a SMS message as part of
a 2FA is considered not
only the poorest of security options but it is suggested that such use
may actually decrease security.
Using a very poor tool may be even worse than using no tool in my experience.
So far, in my experience anyway, most that use very strong passwords
seem to be quite a bit less
likely to succumb to phishing techniques.

Regards

------------------------------------------
Cyrus: Info
Permalink: https://cyrus.topicbox.com/groups/info/T270ab79574d5f63e-M4ff7cb5d6daa19231f7062bf
Delivery options: https://cyrus.topicbox.com/groups/info/subscription
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.