social.bund.de is one of the many independent Mastodon servers you can use to participate in the fediverse.
Dies ist der Mastodon-Server der Bundesbeauftragten für den Datenschutz und die Informationsfreiheit (BfDI).

Administered by:

Server stats:

96
active users

#mfa

0 posts0 participants0 posts today
IT Universität zu Köln<p>Habt Ihr die MFA schon aktiviert? 👀<br><a href="https://wisskomm.social/tags/itcc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>itcc</span></a> <a href="https://wisskomm.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://wisskomm.social/tags/uzk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>uzk</span></a><br>Mehr Infos: uni.koeln/DDD6L</p>
Open Genova APS<p>In questa <a href="https://mastodon.uno/tags/newsletter" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>newsletter</span></a> parliamo di:<br>🔴 <a href="https://mastodon.uno/tags/Virale" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Virale</span></a> vuol dire ancora qualcosa?<br>🟠 Buon World <a href="https://mastodon.uno/tags/Password" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Password</span></a> Day! Tra <a href="https://mastodon.uno/tags/MIT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MIT</span></a>, <a href="https://mastodon.uno/tags/Hacker" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hacker</span></a>, <a href="https://mastodon.uno/tags/Infostealer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Infostealer</span></a> e <a href="https://mastodon.uno/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a>. Perchè sono così vulnerabili<br>🟢 Perché <a href="https://mastodon.uno/tags/Tiktok" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tiktok</span></a> ha preso una multa da mezzo miliardo in <a href="https://mastodon.uno/tags/Europa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Europa</span></a><br>🔵 <a href="https://mastodon.uno/tags/Meta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meta</span></a> lancia la sua app <a href="https://mastodon.uno/tags/IA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IA</span></a> personale: un assistente vocale che può fare anche da <a href="https://mastodon.uno/tags/social" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>social</span></a><br>🟣 <a href="https://mastodon.uno/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a>, come le <a href="https://mastodon.uno/tags/BigTech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BigTech</span></a> indeboliscono il codice di buone pratiche europeo</p><p><span class="h-card" translate="no"><a href="https://feddit.it/c/informatica" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>informatica</span></a></span></p><p> <a href="https://bit.ly/3GFpP6w" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">bit.ly/3GFpP6w</span><span class="invisible"></span></a></p>
0xKaishakunin<p>Finally! 7 Factor Authentication! </p><p><a href="https://mastodon.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://mastodon.social/tags/passkey" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passkey</span></a> <a href="https://mastodon.social/tags/iam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iam</span></a> <a href="https://mastodon.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a></p>
Silke Meyer<p>Apropos <a href="https://univention.social/tags/Passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passkeys</span></a>: c't 3003 hat sich im letzten Video mit dem Thema Synchronisation des Schlüsselmaterials auseinandergesetzt. Die Möglichkeiten der Herstellerclouds oder eigener Passwortmanager werden kurz gezeigt. In Sachen User Experience gibt es für die geräteübergreifende Nutzung von Passkeys allerdings noch keine so gute Note...</p><p><a href="https://youtube.com/watch?v=u7Ti-Jc-b3A" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">youtube.com/watch?v=u7Ti-Jc-b3</span><span class="invisible">A</span></a></p><p><a href="https://univention.social/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a> <a href="https://univention.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a></p>
Silke Meyer<p>Ich empfahl ja neulich auf den <a href="https://univention.social/tags/clt2025" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clt2025</span></a> den Vortrag über <a href="https://univention.social/tags/Passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passkeys</span></a>, die man für <a href="https://univention.social/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a> oder bei manchen Anbietern auch als einzige Authentifizierungsmethode nutzen kann. Auch den Vortrag könnt Ihr nachschauen. Link und Materialien sind hier: <a href="https://chemnitzer.linux-tage.de/2025/de/programm/beitrag/188" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">chemnitzer.linux-tage.de/2025/</span><span class="invisible">de/programm/beitrag/188</span></a></p><p><a href="https://univention.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://univention.social/tags/login" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>login</span></a> <a href="https://univention.social/tags/sso" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sso</span></a> <a href="https://univention.social/tags/webauthn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>webauthn</span></a></p>
Silke Meyer<p>Für alle, die sich mit MFA beschäftigen, ist der Vortrag zu Passkeys von Stefan Schumacher heute um 14:00 Uhr sehr interessant! Der Link zum Stream ist in der Ankündigung zu finden.</p><p><a href="https://chemnitzer.linux-tage.de/2025/de/programm/beitrag/188" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">chemnitzer.linux-tage.de/2025/</span><span class="invisible">de/programm/beitrag/188</span></a></p><p><a href="https://univention.social/tags/clt2025" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clt2025</span></a><br><a href="https://univention.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://univention.social/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a> <a href="https://univention.social/tags/passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passkeys</span></a><br><a href="https://univention.social/tags/keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>keycloak</span></a></p>
Em :official_verified:<p>New Privacy Guides article 🔑✨<br>by me: </p><p>If you are using a YubiKey, </p><p>you might get in some situations where you need to reset your key to factory default, and/or set up a backup of it on a spare key.</p><p>This tutorial will guide you <br>through each step to reset and back up your YubiKey successfully, with clear instructions and plenty of visual support.</p><p>I hope you find it helpful!</p><p><a href="https://www.privacyguides.org/articles/2025/03/06/yubikey-reset-and-backup/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">privacyguides.org/articles/202</span><span class="invisible">5/03/06/yubikey-reset-and-backup/</span></a></p><p><a href="https://infosec.exchange/tags/PrivacyGuides" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PrivacyGuides</span></a> <a href="https://infosec.exchange/tags/Privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Privacy</span></a> <a href="https://infosec.exchange/tags/Yubico" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Yubico</span></a> <a href="https://infosec.exchange/tags/YubiKey" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>YubiKey</span></a> <a href="https://infosec.exchange/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://infosec.exchange/tags/OTP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTP</span></a> <a href="https://infosec.exchange/tags/OpenPGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenPGP</span></a> <a href="https://infosec.exchange/tags/Encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Encryption</span></a> <a href="https://infosec.exchange/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a></p>
layer8<p>Eine Freundin schreibt ihre Masterarbeit zum Thema Arbeitsbelastung von medizinischen Fachangestellten (MFA) in Arztpraxen und braucht noch sehr dringend Teilnehmende an ihrer Umfrage. Falls ihr MFA seid oder welche kennt, könntet ihr hier etwas Gutes tun ;) ansonsten bitte teilen, teilen, teilen 😘</p><p><a href="https://gesundarbeiten.sslsurvey.de/MFA" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gesundarbeiten.sslsurvey.de/MF</span><span class="invisible">A</span></a> </p><p>Telefoniert, sendet Faxe, schickt Brieftauben an die Medibubble (KIM-Nachrichten sind auch ok 🤓)</p><p><a href="https://chaos.social/tags/medizin" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>medizin</span></a> <a href="https://chaos.social/tags/arzt" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>arzt</span></a> <a href="https://chaos.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://chaos.social/tags/gesundheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gesundheit</span></a></p>
IT Universität zu Köln<p>Weihnachten steht fast vor der Tür und auch wir gehen in eine kleine Winterpause. Falls Ihr noch Fragen an unseren <a href="https://wisskomm.social/tags/Helpdesk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Helpdesk</span></a> habt, sei es zu <a href="https://wisskomm.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a>, der neuen Sicherheitssoftware <a href="https://wisskomm.social/tags/CiscoSecureEndpoint" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CiscoSecureEndpoint</span></a> oder dem neuen Webmailprogramm <a href="https://wisskomm.social/tags/SOGo" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOGo</span></a>, meldet Euch am besten gleich! 😊🎄</p><p><a href="https://wisskomm.social/tags/%C3%96ffnungszeiten" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Öffnungszeiten</span></a> <a href="https://wisskomm.social/tags/Helpdesk" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Helpdesk</span></a> <a href="https://wisskomm.social/tags/Winterpause" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Winterpause</span></a> <a href="https://wisskomm.social/tags/Weihnachten" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Weihnachten</span></a> <a href="https://wisskomm.social/tags/Neujahr" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Neujahr</span></a></p>
Manuel 'HonkHase' Atug<p>fefe zu <a href="https://chaos.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a>:</p><p>"NATÜRLICH haben sie ihn erst zugegeben, nachdem die Staatsanwaltschaft die Beweise gegen sie in der Hand hatte. NATÜRLICH haben die da Millionen von Datensätzen herumliegen gehabt. NATÜRLICH kam keiner von deren Auftraggebern auf die Idee, da mal nachzugucken, mit was für einer unseriösen Klitsche sie da ihre Verträge abschließen..."<br><a href="https://blog.fefe.de/?ts=98782801" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">blog.fefe.de/?ts=98782801</span><span class="invisible"></span></a></p>
Manuel 'HonkHase' Atug<p>Hackers abused API to verify millions of Authy <a href="https://chaos.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> phone numbers</p><p>"<a href="https://chaos.social/tags/Twilio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Twilio</span></a> has confirmed that an <a href="https://chaos.social/tags/unsecured" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>unsecured</span></a> API endpoint allowed threat actors to verify the phone numbers of millions of <a href="https://chaos.social/tags/Authy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authy</span></a> multi-factor authentication users, potentially making them <a href="https://chaos.social/tags/vulnerable" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vulnerable</span></a> to <a href="https://chaos.social/tags/SMS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMS</span></a> <a href="https://chaos.social/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> and <a href="https://chaos.social/tags/SIM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SIM</span></a> <a href="https://chaos.social/tags/swapping" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>swapping</span></a> attacks."<br><a href="https://chaos.social/tags/TeamDatenschutz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TeamDatenschutz</span></a><br><a href="https://www.bleepingcomputer.com/news/security/hackers-abused-api-to-verify-millions-of-authy-mfa-phone-numbers/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/hackers-abused-api-to-verify-millions-of-authy-mfa-phone-numbers/</span></a></p>
Jumpfruit (he/him)<p>Mal wieder eine Frage an euch:</p><p>Ich suche eine Authenticator-App (<a href="https://troet.cafe/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a> <a href="https://troet.cafe/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a>), die nicht nur auf Android läuft, sondern auch auf Windows und die das auch synchronisiert. Ich hab mich bisher durch alles mögliche gewühlt und nur Google und Microsoft gefunden.</p><p>Ich habe bisher Authy von Twillo benutzt, aber die haben die Desktop App eingestellt.</p><p><a href="https://troet.cafe/tags/FollowerPower" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FollowerPower</span></a> <a href="https://troet.cafe/tags/FediHelp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FediHelp</span></a></p>
Avoid the Hack! :donor:<p>Lots of new followers (hi!) recently. Some of you are in the <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> or <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> communities, the <a href="https://infosec.exchange/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> community, both, or neither. I post privacy and <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> related things for individuals and small/micro organizations.</p><p>Some are looking for a place to “get started” with improving their privacy and/or security online. In any case, privacy and security start with some basics that I strongly believe everyone should do:</p><p>1. Develop good password management practices, which includes NOT reusing <a href="https://infosec.exchange/tags/passwords" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passwords</span></a>.</p><p>2. Keep your device <a href="https://infosec.exchange/tags/software" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>software</span></a> and firmware updated.</p><p>3. Use multifactored authentication <a href="https://infosec.exchange/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> / two-factored authentication <a href="https://infosec.exchange/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a></p><p>Security is a process. It is also the foundation to online privacy; what good is it to use an encrypted email service if you are reusing weak passwords from your other online accounts?</p><p><a href="https://avoidthehack.com/getting-started-cybersecurity" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">avoidthehack.com/getting-start</span><span class="invisible">ed-cybersecurity</span></a></p>
Manuel 'HonkHase' Atug<p><a href="https://chaos.social/tags/KRITIS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KRITIS</span></a> Sektor <a href="https://chaos.social/tags/Gesundheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Gesundheit</span></a></p><p>Change <a href="https://chaos.social/tags/Healthcare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Healthcare</span></a> hackers broke in using stolen credentials — and no <a href="https://chaos.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a>, says UHG CEO</p><p>"The <a href="https://chaos.social/tags/Ransomware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ransomware</span></a> gang that hacked into U.S. health tech giant Change Healthcare used a set of stolen credentials to remotely access the company’s systems that weren’t protected by multifactor authentication (MFA), according to the chief executive of its parent company, UnitedHealth Group (UHG)."<br><a href="https://chaos.social/tags/EHDS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EHDS</span></a><br><a href="https://techcrunch.com/2024/04/30/uhg-change-healthcare-ransomware-compromised-credentials-mfa/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">techcrunch.com/2024/04/30/uhg-</span><span class="invisible">change-healthcare-ransomware-compromised-credentials-mfa/</span></a></p>
heise online<p><a href="https://social.heise.de/tags/Verpasstodon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Verpasstodon</span></a></p><p>"Ändere Dein Passwort"-Tag: Warum Ändern des Passworts kaum hilft</p><p>Alle Jahre wieder am 1. Februar sorgt der "Ändere Dein Passwort"-Tag für Grummeln in der Redaktion. Wir empfehlen: Besser alte Gewohnheiten ändern!</p><p><a href="https://www.heise.de/hintergrund/Aendere-Dein-Passwort-Tag-Besser-Passkeys-oder-Passwort-Manager-nutzen-9614565.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/hintergrund/Aendere-D</span><span class="invisible">ein-Passwort-Tag-Besser-Passkeys-oder-Passwort-Manager-nutzen-9614565.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege</span></a> </p><p><a href="https://social.heise.de/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> <a href="https://social.heise.de/tags/Passkeys" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passkeys</span></a> <a href="https://social.heise.de/tags/PasswortManager" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PasswortManager</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/ZweifaktorAuthentisierung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZweifaktorAuthentisierung</span></a> <a href="https://social.heise.de/tags/%C3%84nderedeinPasswort" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÄnderedeinPasswort</span></a></p>
LfDI Pressestelle<p>Tipp: Verwenden Sie starke und einzigartige Passwörter für Ihre Konten. Mit "stark" ist gemeint, dass das Passwort möglichst lang (ab 16 Zeichen) und zufällig generiert sein sollte. Die Verwaltung Ihrer Zugänge/Konten sollte über einen Passwort-Manager erfolgen. Für zusätzliche Sicherheit empfehlen wir die Verwendung von Zwei- oder Mehr-Faktor-Authentisierung (<a href="https://xn--baw-joa.social/tags/2FA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2FA</span></a>, <a href="https://xn--baw-joa.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a>), z. B. über TOTP, FIDO/U2F.</p><p><a href="https://xn--baw-joa.social/tags/passwort" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passwort</span></a> <a href="https://xn--baw-joa.social/tags/sicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sicherheit</span></a> <a href="https://xn--baw-joa.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://xn--baw-joa.social/tags/schutz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>schutz</span></a> <a href="https://xn--baw-joa.social/tags/awareness" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>awareness</span></a></p>
christine<p>For my hackathon project I did try to make CFA (Cat Factor Authentication, using your cat's microchip as a second factor) a thing 😆 The project did win a prize, but more for the experimentation then the actual result <a href="https://wpengine.com/blog/hackathon-december-2023/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">wpengine.com/blog/hackathon-de</span><span class="invisible">cember-2023/</span></a></p><p><a href="https://ruby.social/tags/catsofmastodon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>catsofmastodon</span></a> <a href="https://ruby.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://ruby.social/tags/hackathon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackathon</span></a> <a href="https://ruby.social/tags/wpengine" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>wpengine</span></a></p>
mupan 📚<p><span class="h-card" translate="no"><a href="https://social.tchncs.de/@kuketzblog" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kuketzblog</span></a></span> Ich möchte <a href="https://digitalcourage.social/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> (Multifaktorauthentifizierung) in meiner <a href="https://digitalcourage.social/tags/Nextcloud" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Nextcloud</span></a> erstmal nur für meinen Account. Ich finde aber nur ein Setting: MFA für alle erzwingen. Kann ich mit einer Erweiterung oder einer manuellen Bearbeitung einer Datei am Server MFA kontenindividuell setzen?</p>
Marcel Waldvogel<p>4️⃣ Cloud untergräbt Sicherheit von Zwei-Faktor-Authentifizierung (2023-09)<br>Zwei-Faktor-Authentisierung ist ein wichtiger Aspekt zur Sicherung unserer Online-Infrastruktur und -Daten. Leider erfordert sie ein paar zusätzliche Schritte und Vorsichtsmassnahmen. Deshalb haben viele Nutzer sie nicht aktiv. <a href="https://waldvogel.family/tags/PassKey" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PassKey</span></a> soll das vereinfachen. Aber man sollte sie nicht so einfach auf angeblich neue Geräte syncen…<br><a href="https://waldvogel.family/tags/2FA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2FA</span></a> <a href="https://waldvogel.family/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> <br><a href="https://dnip.ch/2023/09/19/cloud-untergraebt-sicherheit-von-zwei-faktor-authentifizierung/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">dnip.ch/2023/09/19/cloud-unter</span><span class="invisible">graebt-sicherheit-von-zwei-faktor-authentifizierung/</span></a></p>
Claudius Link<p>Some more context to my rant about the shortcomings of <a href="https://infosec.exchange/tags/Entra" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Entra</span></a> ID <a href="https://infosec.exchange/tags/Password" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Password</span></a> Protection, </p><p>1. The risk is greatly reduced if you use <a href="https://infosec.exchange/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> </p><p>BUT while I'm not sure if <a href="https://infosec.exchange/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> enforces MFA they enforce the weak password rules. </p><p>And a recent event caused me to reevaluate my assumption on how well know <a href="https://infosec.exchange/tags/2FA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2FA</span></a>/MFA really is:</p><p>I gave <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> talk to non-IT people (still technical so) and closed it with a set of recommendation. One was to enable Second Factor Authentication wherever possible. Which lead to the question from one participant "What is Second Factor Authentication"</p><p>That was quite a 😵​ moment. I had the wrong assumptions. How can I assume that MFA reduces a risk if many people don't know about it.</p><p><a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/Fail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fail</span></a> <a href="https://infosec.exchange/tags/SecurityFail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityFail</span></a></p>