| General > General Technical Chat |
| Moderation reports |
| << < (112/138) > >> |
| Karel:
Would it be an idea to use two-factor authentication (for registering only) that uses an sms verification? |
| Simon:
That's not an easy one to setup. |
| MK14:
--- Quote from: Karel on March 08, 2020, 08:51:40 am ---Would it be an idea to use two-factor authentication (for registering only) that uses an sms verification? --- End quote --- That is a good idea. But, I believe there are fairly easy ways of getting round SMS verification. If trolling users want to. I.e. If they can work out how to get around IP bans, they can probably figure out how to get round SMS verification, as well. |
| Simon:
Not sure you can get around SMS verification. That's the point and why banks use it, unless your haking the phone network and using other peoples numbers your stumped. The IP thing is easy, unplug your modem and plug it back in. Unless your on a fixed IP you will get another one. I had to do this when i was with the phone coop as one of the IP's in their pool was banned for email spamming. Once you have got all the IP's in your local pool blocked you move onto proxy's. This is why those customer surveys at the end of the call when you phone a phone provider are a really bad idea and our screw you economy is creating security risks. Call handlers are rated and paid or even fired based on the survey results. So if you call up and don't have the right details you get nasty. The call handler fearing a bad review and loss of vital earnings lets you into the account whereupon you transfer the number to a new provider and address. SIM card turns up, you activate it and are now in control of your victims 2FA and empty their bank account. It's been done - in the UK. But that's the only way around it, to gain physical access to the number. But you need to have a service that sends SMS's worldwide. No sure that will be cheap. |
| beanflying:
There is some more security measures that can be taken with the backend of SMF regarding new accounts but here maybe isn't the place to have this discussion. |
| Navigation |
| Message Index |
| Next page |
| Previous page |