That's why we need 2FA. @PayPalSecurity will you ever support U2F? https://twitter.com/josephfcox/status/832853549851803648 …
That's why passwords need to die. Phishing would be impossible with all auth via client certs.
-
-
if only client support actually worked for that...
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
I don't think you realise the consequences of that
-
Go on.
-
BTW password managers and random passwords also solve the problem of phishing 100%.
-
I don't think so. It mitigates the risk of a phished password. But a phished PayPal password still put my money at risk
-
Someone can't phish a password you don't know. Using pw manager means you NEVER KNOW ANY PASSWORDS. Only pw manager does
-
@salyavin until https://blog.flameeyes.eu/2014/09/make-password-management-better/ … gets implemented, copy-pasting passwords off a manager still happens. -
and btw given how "well" pwmanager autofills work, it'll be easy to blame the manager for bugs instead.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.