Intermarkets' Privacy Policy
Support
Donate to Ace of Spades HQ!
Contact
Ace:aceofspadeshq at gee mail.com
Buck:buck.throckmorton at protonmail.com
CBD:
cbd at cutjibnewsletter.com
joe mannix:
mannix2024 at proton.me
MisHum:
petmorons at gee mail.com
J.J. Sefton:
sefton at cutjibnewsletter.com
Recent Entries
Saturday Night Club ONT - February 28, 2026 [2 D's]
Saturday Evening Movie Post [moviegique]: Good Luck, Have Fun, Don't Die
Hobby Thread - February 28, 2026 [TRex]
Ace of Spades Pet Thread, February 28
Nazis, RINOs, Islamofascists, and Other Infiltrators Who Should Have Been Purged Long Ago Are Having a Bad Day
Gardening, Home and Nature Thread, Feb. 28
Reactions: All the Right Nazis and Islamic Apologists Is Losing Dey Shit
REPORTS: THE AYATOLLAH HAS BEEN KILLED
The Classical Saturday Morning Coffee Break & Prayer Revival
The US and Israel Have Launched Military Strikes to Take out the Iranian Government
Absent Friends
AoSHQ Writers Group
A site for members of the Horde to post their stories seeking beta readers, editing help, brainstorming, and story ideas. Also to share links to potential publishing outlets, writing help sites, and videos posting tips to get published.
Contact OrangeEnt for info: maildrop62 at proton dot me
Cutting The Cord And Email Security
Moron Meet-Ups
|
« Wednesday Overnight Open Thread (9/13/23) |
Main
| The Morning Report — 9/14/23 »
September 14, 2023
Daily Tech News 14 September 2023
Top Story
- When MFA ain't. (Retool)
MFA - multi-factor authentication - is when you need something you know (a password) plus something you have (a hardware authentication device) to log in to a critical piece of infrastructure.
But hardware authentication devices are inconvenient, so we have authentication apps that run on our phones.
And losing your authentication codes is inconvenient, so these apps sync to the cloud.
And the cloud is where your email probably is, and where password reset requests go.
Meaning that if you use the same cloud for your password resets and your authentication syncing, you don't have MFA anymore. Indeed, you have Sweet FA if someone gets into your email account.
Good writeup by Retool in how they were hacked - and why their non-cloud customers weren't affected at all.
Tech News
Disclaimer: Or is it?

posted by Pixy Misa at 04:12 AM
| Access Comments
|
Recent Comments
Recent Entries
Saturday Night Club ONT - February 28, 2026 [2 D's]
Saturday Evening Movie Post [moviegique]: Good Luck, Have Fun, Don't Die
Hobby Thread - February 28, 2026 [TRex]
Ace of Spades Pet Thread, February 28
Nazis, RINOs, Islamofascists, and Other Infiltrators Who Should Have Been Purged Long Ago Are Having a Bad Day
Gardening, Home and Nature Thread, Feb. 28
Reactions: All the Right Nazis and Islamic Apologists Is Losing Dey Shit
REPORTS: THE AYATOLLAH HAS BEEN KILLED
The Classical Saturday Morning Coffee Break & Prayer Revival
The US and Israel Have Launched Military Strikes to Take out the Iranian Government
Search
Polls! Polls! Polls!
Frequently Asked Questions
The (Almost) Complete Paul Anka Integrity Kick
Top Top Tens
Greatest Hitjobs
|