正在加载视频...

视频加载失败

أقدملكم vd: Password Manager and OTP Authenticator. مش هتحتاج Google Authenticator تاني

28,254 次观看 • 24 天前 •via X (Twitter)

0 条评论

暂无评论

原始帖子的评论将显示在这里

相关视频

🚨 IMPORTANT 🚨 Good OpSec today, keeps DPRK away! This is probably one of the highest value podcast episodes we've ever done and I don't throw that around lightly. Reason being, if you're in crypto and you can't keep your crypto safe, then there's no point. We went into specifics with the experts on how DeFi users can stay safe onchain and also how protocol founders can harden their protocol better: “All of us are going to click on a phishing link eventually. It doesn’t matter how sophisticated you are. I consider myself quite sophisticated, and I’ll do it eventually. It will happen. You go to a phishing site, enter your password, then it asks for your 2FA code. You open Google Authenticator, copy the code, and enter it. Now the attacker has your password and your 2FA. They’re inside your account. That’s it. Account hacked. Google Authenticator, Authy, Microsoft Authenticator and similar 2FA codes are not phishing resistant. And there’s another issue: many people have their email in Gmail, passwords saved in Chrome, 2FA synced through Google Authenticator, and passkeys synced to their Google account. If that Google account gets compromised, an attacker may have access to your emails, passwords, 2FA and passkeys. Basically everything.” — Pablo Sabbatella of opsek If you read this far, Pablo gives steps to keep yourself safe even from phishing attacks. Start listening from about 35:55 mark if you want to know his solutions/best practices 🫡 Lastly, a quick shoutout to the world-class curator team KPK (and Edge Podcast sponsor). They introduced us to Pablo and Louis from Opsek and have streamlined these security best practices into their own daily operations.

Nomatic

11,229 次观看 • 1 个月前