This is your periodic reminder: disable SMS as a 2FA mechanism; it essentially gives your cell carrier's worst CS rep all your passwords.
-
-
Replying to @patio11
For one of the thousands of times this has been abused, see here: https://medium.com/@CodyBrown/how-to-lose-8k-worth-of-bitcoin-in-15-minutes-with-verizon-and-coinbase-com-ba75fb8d0bac …
3 replies 25 retweets 38 likes -
Replying to @patio11
I feel for that CS rep, because they are largely just taking input in a state machine which is designed with calls per hour in mind.
2 replies 6 retweets 14 likes
Most authentication workflows at scale have to be tolerant of users who are confused, have diminished faculties, or misremember information.
2:45 AM - 2 Jun 2017
1 reply
8 retweets
30 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.