Comment on User data stolen from genetic testing giant 23andMe is now for sale on the dark web

<- View Parent
Saik0Shinigami@lemmy.saik0.com ⁨1⁩ ⁨year⁩ ago

It is not trivial

And yet I just explained to you two ways to do it real easily that I’ve implemented into several platforms. It has been trivial.

Sending emails for suspicious login is 2fa, by the way.

Only if you actually block login until link is clicked in email. Just sending an email is not 2fa. You don’t need to specifically block the user, a notification would be sufficient for many users to understand “Wait… I didn’t login, I should change my password immediately.”

source
Sort:hotnewtop