4 ms·
That's already the case. If their algorithms decide that your activity is "unusual", they can disable your ability to login with literally no option to bypass i
by anter 5y ago
That's already the case. If their algorithms decide that your activity is "unusual", they can disable your ability to login with literally no option to bypass it.
https://i.imgur.com/4YrElkJ.png https://i.imgur.com/4YrElkJ.png
Keep that in mind when you e.g. go traveling.
- danlugo92 5y agoIf you have OTP 2FA set up they let you login from anywhere.
- deleted 5y ago[deleted]
- mindslight 5y agoI've been getting this for years. This announcement doesn't seem like a major change to their overall policy, just a ramping up of the roadblocks for CGNAT and the like. Rather than giving users options, Big Tech has decided to paternalistically kill passwords in favor of less convenient and less secure methods (my email is much less secure than my password store). Even from residential IPs, it's become the norm for banking websites to harass you with snake oil "2FA" every time you login. The only solution is to split up your online activities so you can conform to their demands with one VM/browser config, account for the extra annoyances as the price of using their services, and move as much activity as possible to freedom-respecting technologies.
- pullitoutur 5y agoWhich of course is why those tech companies spent effort writing and advancing FIDO specs, and why I am able to login to my Goog/Facebook/MS accounts just perfectly damn fine using offline tools (pass, pass-otp). Can we please stop spreading FUD because people here really getting their jimmies rustled at any extra steps (even though this forum is often rife with people falling for phishing attempts, repeatedly using GoDaddy, on and on, proving that they can't protect themeselves.)* But maybe you could name a few tech companies besides Twitter who have implement 2FA you way you imply.