-55

Sorry for the geek post...

all 50 comments
sorted by: hot top controversial new old
[-] jet@hackertalks.com 45 points 1 year ago

This really isn't enshittification. Things are not being made worse just to drive someone else's profit. There isn't the big fido2 key lobby pushing this in the background. This is a security measure to improve security on a highly technical website that is the target of lots of attacks.

Its annoying and inconvenient, sure, but not making a service worse to drive profit.

[-] Doug@midwest.social 11 points 1 year ago

Lot of comments here with single down votes. I wonder how salty op is

[-] jet@hackertalks.com 9 points 1 year ago* (last edited 1 year ago)

Dead Sea levels....

Microsoft / Github do a ton of shitty things, straight up enshittification textbook stuff... spoiled for choice really... just not 2fa.

[-] pikasaurX4@lemm.ee 18 points 1 year ago* (last edited 1 year ago)

Which part of this is infuriating you? The fact that a message is popping up or what it’s asking you to do? Or is it the fact that it’s all in comic sans? Honestly, 2FA is a really simple way to greatly improve security on your account. I’m no expert, so maybe it’s got major flaws that I don’t know about, but just set it up really quick and choose to remember your device. Now you’ll never need to worry about it and you won’t see this message

[-] scrubbles@poptalk.scrubbles.tech 10 points 1 year ago

I've had numerous accounts of people getting my password through a breach or something and 2fa being the only thing that stopped them from getting into my account. On GitHub that's my strongest logins, don't know why anyone would be against securing their code

[-] Rhaedas@kbin.social 3 points 1 year ago

Unless you use a VPN/browser security addons (don't know which breaks it). The "register your device" has never stuck for me. But it's not a big deal even then, just another step as long as there are a few options to choose in case one method isn't possible at the time. The "are you a robot" ones though...I really need to get a bot to solve the ones that still pop up for me (definitely VPN).

[-] SubArcticTundra@lemmy.ml 1 points 1 year ago

Hmm that's true, I suppose it only needs to happen every time you log in on a new device

load more comments (1 replies)
[-] bilb@lem.monster 18 points 1 year ago

I don't think so. Enforcing two-factor auth to be allowed to do certain things with an account just makes sense. It's definitely not an attempt to squeeze profit out of users per se, but rather an attempt to limit liability and the risk of costly support problems caused by passwords being compromised.

[-] mp3@lemmy.ca 2 points 1 year ago

I think it's even more important with contributors of large projects and libraries used by a vast amount of software out there.

It's not inconceivable that someone's account gets hijacked, and someone uses their trusted account to add a small snippet of malicious code in a commit, enabling a supply-chain attack.

[-] Kolanaki@yiffit.net 10 points 1 year ago* (last edited 1 year ago)

2FA is enshittification now?

I mean... I guess in a way it is a symptom of it, if you consider the growing concern of hacking part of enshittification and this, a method of stopping or at least slowing an attack down, being a product of that.

It's more of an anti-enshittification device that just comes with a slight bit of shittiness in the form of another step to logging in.

load more comments (2 replies)
[-] lemann@lemmy.one 7 points 1 year ago

Please make a U-turn at the next junction and follow all signs to !unpopularopinion@lemmy.world

[-] SubArcticTundra@lemmy.ml 2 points 1 year ago

I was actually considering posting it there at first. Would have fitted there better it seems

[-] hanna@lemmy.blahaj.zone 3 points 1 year ago

I was more annoyed at the ssh key requirement lol, I know it’s more secure etc etc but im not working on anything sensitive, it’s just annoying

[-] jet@hackertalks.com 2 points 1 year ago

Not sensitive for you. But GitHub has started to look at supply chain attacks. So I'm popular module which isn't very sensitive is used biological projects that are. The account that maintains the module is exploited and that causes lots of havoc

[-] SubArcticTundra@lemmy.ml -1 points 1 year ago* (last edited 1 year ago)

Yeah exactly, this is what I mean. I still haven't figured out how to set that up so I have to paste the key in from my password manager every time I want to push. I hate when they paternalisticly decide what ought to be best for me

[-] planish@sh.itjust.works 2 points 1 year ago

It isn't enshitification in the sense of trying to make the platform make money, but it is throwing up new roadblocks in the way of using the platform. It makes it harder to just show up, register, and post code. It creates multiple tiers of users who have different privileges on the platform. And from here it would be easier to move to, with some of the same justifications, some sort of requirement to pay for code hosting.

[-] 0x2d@lemmy.ml 1 points 1 year ago
[-] SubArcticTundra@lemmy.ml 1 points 1 year ago* (last edited 1 year ago)

Coding instantly feels more fun

this post was submitted on 23 Aug 2023
-55 points (17.6% liked)

Mildly Infuriating

35455 readers
278 users here now

Home to all things "Mildly Infuriating" Not infuriating, not enraging. Mildly Infuriating. All posts should reflect that.

I want my day mildly ruined, not completely ruined. Please remember to refrain from reposting old content. If you post a post from reddit it is good practice to include a link and credit the OP. I'm not about stealing content!

It's just good to get something in this website for casual viewing whilst refreshing original content is added overtime.


Rules:

1. Be Respectful


Refrain from using harmful language pertaining to a protected characteristic: e.g. race, gender, sexuality, disability or religion.

Refrain from being argumentative when responding or commenting to posts/replies. Personal attacks are not welcome here.

...


2. No Illegal Content


Content that violates the law. Any post/comment found to be in breach of common law will be removed and given to the authorities if required.

That means: -No promoting violence/threats against any individuals

-No CSA content or Revenge Porn

-No sharing private/personal information (Doxxing)

...


3. No Spam


Posting the same post, no matter the intent is against the rules.

-If you have posted content, please refrain from re-posting said content within this community.

-Do not spam posts with intent to harass, annoy, bully, advertise, scam or harm this community.

-No posting Scams/Advertisements/Phishing Links/IP Grabbers

-No Bots, Bots will be banned from the community.

...


4. No Porn/ExplicitContent


-Do not post explicit content. Lemmy.World is not the instance for NSFW content.

-Do not post Gore or Shock Content.

...


5. No Enciting Harassment,Brigading, Doxxing or Witch Hunts


-Do not Brigade other Communities

-No calls to action against other communities/users within Lemmy or outside of Lemmy.

-No Witch Hunts against users/communities.

-No content that harasses members within or outside of the community.

...


6. NSFW should be behind NSFW tags.


-Content that is NSFW should be behind NSFW tags.

-Content that might be distressing should be kept behind NSFW tags.

...


7. Content should match the theme of this community.


-Content should be Mildly infuriating.

-At this time we permit content that is infuriating until an infuriating community is made available.

...


8. Reposting of Reddit content is permitted, try to credit the OC.


-Please consider crediting the OC when reposting content. A name of the user or a link to the original post is sufficient.

...

...


Also check out:

Partnered Communities:

1.Lemmy Review

2.Lemmy Be Wholesome

3.Lemmy Shitpost

4.No Stupid Questions

5.You Should Know

6.Credible Defense


Reach out to LillianVS for inclusion on the sidebar.

All communities included on the sidebar are to be made in compliance with the instance rules.

founded 1 year ago
MODERATORS