Not just Russians. Get 2FA with security key. A physical token (easy to use!) is the only real protection against phishing. If on Gmail, use advanced protection if you’re in politics or journalism. If you need help, contact me and I’ll direct you to people who can help set up.https://twitter.com/nxthompson/status/1020437448332054529 …
-
Show this thread
-
Replying to @zeynep
If people can’t figure out how to set up their own 2FA they have bigger problems...
1 reply 0 retweets 1 like -
Replying to @morsels
The instructions provided by major companies are terrible, terrible. Confusing and contradictory, and Google's own 2FA instructions have actual errors. I've been trying for years to get this fixed, no avail. Help pages get no attention.
1 reply 0 retweets 22 likes -
Replying to @zeynep
Fair point re: companies. But it isn’t brain surgery— just requires some additional human effort. The only 2FA problems I’ve ever had are when I get a new phone... because that can be a mega pain!
3 replies 0 retweets 1 like -
Replying to @morsels
I've trained lots of otherwise smart, accomplished and educated people. Some of the steps that seem intuitive aren't (unless you already know it) and the help pages don't explain it that well. But yes, once you do it, it is super easy. I've used my key for years, zero problems.
1 reply 0 retweets 1 like -
Replying to @zeynep
i think humans just aren’t used to the idea that for security purposes, not everything, like storing a key, can be done online...
1 reply 0 retweets 0 likes
I don't see any way forward with phishing besides security keys... Google's own engineers got phished, what hope regular mortals have? Phishing is too easy to do, too hard to detect. We get used to regular keys, and we'll get used to these. I hope!
-
-
Replying to @zeynep
do you have a link for the Google engineers getting phished? not questioning you, just so I can point to it :)
0 replies 0 retweets 0 likesThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.