• 0 Posts
  • 25 Comments
Joined 2 years ago
cake
Cake day: June 18th, 2023

help-circle





  • Wow, we gone full circle here. 2FA (the “protocol”, not the application mentioned in the OP) was conceived to increase security by requiring a second factor (not second secret). So we would need the password (knowledge based authentication) and the code generating hardware (possession based authentication). If we stuff all our 2FA secrets into a web service, we efficiently removed the possession factor of the authentication, making it one where two knowledge factors (password for the thing you want to login to and password for the hosted 2FA storage) are sufficient.










  • It’s wild to think a machine which is built to detect alcohol in your breath is less reliable than a human interpreting the dance of another human. “The breathalyzer showed 0.07 but I let them do the dance and it looked more like a 0.09 to me, so I took them in.”

    And for anyone claiming other substances will not show in a breathalyzer but the dancing. That’s what swab tests are for. Collect sample, let chemicals do their thing and decide on wether the indicator turned red or green, with way less interpretation needed than an arbitrary dance.