388
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 10 Jul 2023
388 points (99.2% liked)
Fediverse
17848 readers
33 users here now
A community dedicated to fediverse news and discussion.
Fediverse is a portmanteau of "federation" and "universe".
Getting started on Fediverse;
- What is the fediverse?
- Fediverse Platforms
- How to run your own community
founded 5 years ago
MODERATORS
They added 2FA login to lemmy in one of the newer updates. Probably pretty pertinent for any admins to use it....
It’s buggy and missing some key checks to make sure it’s working when you set it up.
Real risk of locking yourself out of your account.
oh, really? maybe i'll turn mine off then.....Thanks for the heads up!
Mostly a risk on initial setup.
I’ve been waiting a bit for it to stabilize and just using huge random passwords
If you're using a password manager you'd be doing this for every site and without even having to think about it. Bitwarden is a great choice.
I like KeePass. Bitwarden currently has an nginx exposure in the Dockerfile published in their git repo (may have been fixed since a couple of days ago). That said, I used Bitwarden for many years and switched out of an abundance of paranoia, and am definitively not recommending against it. Just basically use one of the following:
And stay far the fuck away from LastPass
my uni is currently still recommending lastpass as of now, tho I’ve heard they might be looking for alternatives …
LastPass has had a few security incidents lately. I do not trust them at all.
KeePass +1
Oh I do. Used Bitwarden for many years.
I actually use keepass for totp codes too.
Too bad it doesn't work with several 2FA apps and right now....
Also I believe this was achieved through cookie stealing, which 2FA would not have helped