this post was submitted on 16 Jun 2023
1 points (100.0% liked)
Australia
3595 readers
225 users here now
A place to discuss Australia and important Australian issues.
Before you post:
If you're posting anything related to:
- The Environment, post it to Aussie Environment
- Politics, post it to Australian Politics
- World News/Events, post it to World News
- A question to Australians (from outside) post it to Ask an Australian
If you're posting Australian News (not opinion or discussion pieces) post it to Australian News
Rules
This community is run under the rules of aussie.zone. In addition to those rules:
- When posting news articles use the source headline and place your commentary in a separate comment
Banner Photo
Congratulations to @[email protected] who had the most upvoted submission to our banner photo competition
Recommended and Related Communities
Be sure to check out and subscribe to our related communities on aussie.zone:
- Australian News
- World News (from an Australian Perspective)
- Australian Politics
- Aussie Environment
- Ask an Australian
- AusFinance
- Pictures
- AusLegal
- Aussie Frugal Living
- Cars (Australia)
- Coffee
- Chat
- Aussie Zone Meta
- bapcsalesaustralia
- Food Australia
- Aussie Memes
Plus other communities for sport and major cities.
https://aussie.zone/communities
Moderation
Since Kbin doesn't show Lemmy Moderators, I'll list them here. Also note that Kbin does not distinguish moderator comments.
Additionally, we have our instance admins: @[email protected] and @[email protected]
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
It's funny in a sad way that 2FA was supposed to be real secure but like all other security, the human element is the biggest weak point, and the custodians of it (telcos) are asleep behind the wheel.
2FA works. It is supposed to be something you know (password) and something you control (like a secure hardware key or app). The problem is people don't control their phone numbers, the telcos do.
It's worth noting that 2FA is still a security improvement. Using SMS for 2FA doesn't introduce any vulnerabilities compared to no 2FA. It's just not nearly as good as doing 2FA using a TOTP app or dongle. Or using hardware security tokens like FIDO2.
Unless the "2FA" channel is what they use to verify password resets.
Sure, but that's separate from 2FA and is pretty common even in places that don't offer any 2FA.