This is why 2FA is awful. https://twitter.com/info_dox/status/856385086769569792 …
-
This Tweet is unavailable.
-
Replying to @RichFelker
Solution for advanced users: id_rsa on public site, strong passphrase = ability to re-establish auth roots from anywhere with new device.
4 replies 1 retweet 2 likes -
Replying to @RichFelker
Depends very much on your attack scenario. Private key files only have their kdf to defend them. Easy to parallelize brute force.
1 reply 0 retweets 0 likes
Replying to @judsonlester
Yes, you need a really strong passphrase.
8:39 AM - 24 Apr 2017
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.