3 ms·
Maybe Site5 should ask better security questions then. If they want users to enter what is effectively a password for "Mother's maiden name" they should just as
by doublec 14y ago
Maybe Site5 should ask better security questions then. If they want users to enter what is effectively a password for "Mother's maiden name" they should just ask for a security password.
- obstacle1 14y agoI agree that the true-to-life reminder questions are probably an outdated model. However there's nothing intrinsically wrong with the maiden name question. There is no server-side code checking in with your mother or running her middle name against a federal database, you can enter whatever you want in the box. Surely people who are savvy enough to be trading in Bitcoin realize this.
- michaelt 14y agoHowever there's nothing intrinsically wrong with the maiden name question. Asking users to enter their mother's maiden name, when you actually think they certainly shouldn't do that, then blaming your customers for having used their maiden name, seems like an odd way of doing it. If mother's maiden name isn't a good enough security question, stop asking it! And we all know it isn't a good enough security question.
- miles 14y agoMaybe Site5 should ask better security questions then. Looks like they have allowed users to create their own for quite a while: We have allowed customers to write their own security questions for over two and a half years now. http://www.site5.com/blog/s5/security-and-social-engineering/20130307/ http://www.site5.com/blog/s5/security-and-social-engineering...
- raverbashing 14y agoYes It's a pain, but I don't trust this "Mother's Maiden name" invention. Problem is remembering this (and some offline systems have it as well, oh well) So if you think I'm going to put the actual name there you're wrong. Maybe not +@sfghh#54$=24 but something different.