5 ms·
Can someone explain how it’s anything but completely insane for an online service to deny access to someone with a *correct* password?? This isn’t someone gett
by evouga 4y ago
Can someone explain how it’s anything but completely insane for an online service to deny access to someone with a *correct* password??
This isn’t someone getting locked out because they forgot their password (where I can at least understand why the user is at fault).
- martincmartin 4y ago2FA exists because sometimes ne'er do wells get your password. Phishing, guessing weak passwords, password reuse from sites that are hacked, the list goes on.
- evouga 4y agoOf course I understand enforcing 2FA when the user has signed up for/opted in to 2FA. But that doesn’t seem to be what’s happening here: Google unilaterally decided to enforce 2FA on a 1FA account.
- cuteboy19 4y ago"Old password+new password" is not 2fa
- awinter-py 4y agoyes exactly. if G were following best practices from the consumer banking industry, 2fa would be more like 'old password + random row from your equifax profile'
- cuteboy19 4y agoAnd of course, the last 4 digits of your ssn
- awinter-py 4y ago'any digit from your ssn'
- jacob019 4y agoI would rather not have to live in a world where google uses my credit profile for authentication.
- josephcsible 4y agoWhat Google did here isn't 2FA.
- sneak 4y agoI have the correct passwords for gazillions of gmail accounts (that are not mine) because people reuse passwords constantly.
- BenjiWiebe 4y agoGive us an example. Which password for which email account? :)
- powerapple 4y agothis is not just happening to Google, epicgames, steam, GitHub, you name it. It is every online service.