Could attackers improve? Sure, in theory. But in theory people could be convinced not to reuse passwords or make them their kid’s name. That said, I spend much of my life trying to convince people to use auth apps or U2F.
Also, whomever can get Google to fix this worse-than-useless help page should get all security awards. I've been trying for more than a year. This useless page is a bigger hurdle to U2F adoption than anything else I've encountered. https://support.google.com/accounts/answer/6103523?hl=en&ref_topic=6103521 …
-
-
OpenBSD has begun a clean room reimplementation of an app, SecureIt, written by an Italian guy - Marco Zic...
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Hey
@zeynep, why don’t you just point interested folks at http://g.co/advancedprotection …, if the ultimate goal is to have only U2F enabled on the user’s account? -
I’m pretty familiar with it. I do sometimes point it out to appropriate people. It’s great that it exists! The account recovery trade-off means that it’s not the best fit for everyone. (Also needs better documentation to guide people on the trade-offs).
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
