Hacker Poesy
  • FAQ
  • Login
  • Public

    • Public
    • Groups
    • Recent tags
    • Popular
    • Directory

Conversation:

Notices

  1. maiyannah (maiyannah)'s status on Saturday, 10-Dec-2016 17:52:11 EST maiyannah maiyannah
    Remote profile options...
    Via Boogie: "Up until that point I thought I was entirely secure. I changed my passwords frequently and they were always 16–20 letters and numbers with special characters. I never used a password a second time. I even used two step authentication to basically turn my cell phone into a authentication key. Not only did these steps fail to prevent me from being hacked…
    Saturday, 10-Dec-2016 17:52:11 EST from community.highlandarrow.com permalink

    Attachments

    1. maiyannah-20161210-ostatus-57sp.html
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:26:48 EST maiyannah maiyannah
      Remote profile options...
      • verius
      @verius 2FA the ideal is fine.

      2FA the phone number thing is shit.  And it's designed that way for a reason - ask yourself, why do so many entities that participate in tracking systems keep trying to tell you that this is secure and you should totally do it?  
      Sunday, 11-Dec-2016 04:26:48 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:28:21 EST maiyannah maiyannah
      Remote profile options...
      • verius
      @verius To me it's an instance of something that has security implications being hijacked by the mainstream corporations into something used to control and have surveillance on user actions.
      Sunday, 11-Dec-2016 04:28:21 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:34:38 EST maiyannah maiyannah
      Remote profile options...
      • verius
      @verius I happen to know of more than one game that has sold location data from where people were using authenticators from.  I know of a couple that have made the news by having the authenticator application track you even when closed.

      I trust them even less than rms does
      Sunday, 11-Dec-2016 04:34:38 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:38:17 EST maiyannah maiyannah
      Remote profile options...
      • verius
      @verius There's actually a common open source app most of them use that IS clean that I look for in them though I don't remember the name of it.  Pretty much every proprietary alternative to it exists as surveillance.
      Sunday, 11-Dec-2016 04:38:17 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:39:06 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @archaeme @verius Steam Guard's 2FA was and is an explicit grab for phone numbers to sell.  There's been several reports confirming that as soon as people used it with burner numbers they started getting telemarketing calls.
      Sunday, 11-Dec-2016 04:39:06 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:44:53 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @archaeme @verius I've said it time and time again - 2FA even in its ideal, doesn't protect you from account compromises that happen as a result of sloppy server security.

      The client can be armed to the teeth, connected to mains electricity, and rigged to explode if tampered with, it doesn't matter, if the server has a revolving door.
      Sunday, 11-Dec-2016 04:44:53 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:52:42 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @verius @archaeme No, it's forced in the EU too, though I'm not sure if they've sold EU numbers.  They got fined a not insignificant amount of money recently by the Competition Bureau here in Canada for an omnibus of complaints, of which this was one.  Surprised the gaming news wasn't all over that, but Valve does have a lot of money to make things go away, and the gaming press is very corruptable.
      Sunday, 11-Dec-2016 04:52:42 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:53:54 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @verius @archaeme I say "forced" because while the actual imposition of Steam Guard is "optional" they exert such restrictive digital restrictions on both games, and your account, if you do not have Steam guard, that you are coerced into doing so.  If you have to do something to operate basic functions of an application, then that something is not "optional"
      Sunday, 11-Dec-2016 04:53:54 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:54:44 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @verius @archaeme Every time a company responds to a server breach by imposing two-factor authentication I identify another company that either doesn't understand security - or usually much more likely - thinks we're idiots.
      Sunday, 11-Dec-2016 04:54:44 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:56:32 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @archaeme @verius The current trend seems to be biometric security, which is a bad, bad idea for many reasons in many applications where it is used.
      Sunday, 11-Dec-2016 04:56:32 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:56:53 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Archaeme
      @verius @archaeme rms had a good write-up on the reasons why somewheres on his gargantuan personal website.
      Sunday, 11-Dec-2016 04:56:53 EST permalink
    • maiyannah (maiyannah)'s status on Sunday, 11-Dec-2016 04:58:24 EST maiyannah maiyannah
      Remote profile options...
      • verius
      • Purple Hippo
      • Archaeme
      @purplehippo @verius @archaeme Actually the big restriction is family sharing.  In many regions you literally cannot use that feature if you don't have steam guard.  I have a feeling that they carefully chose the regions they felt they could skirt the consumer protection laws thereof in this regard.
      Sunday, 11-Dec-2016 04:58:24 EST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • Privacy
  • Source
  • Version
  • Contact

Hacker Poesy is a GNU social hub. It runs version 1.1.3-beta3, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Hacker Poesy content and data are available under the Creative Commons Attribution 3.0 license.

Switch to mobile site layout.