MFA - 1 = SFA
aka password login
MFA - 1 = SFA
aka password login
For me it’s the high-horse holier than thou attitude most of them seem to carry in online conversations. I know a fee vegans and they are mostly fine in person after the first few months of radicalization, but I imagine they just suppress it in person to maintain the acquaintanceship and then bitch in their vegan echo chambers about how “my co-worker who knows I’m vegan had the audacity to order a hamburger and eat it in front of me knowing I’m vegan, does he know he’s destroying the world with that Burger… AITA?”
If you’re looking for scientific answers, good luck they, Inrhjnjbmost people stop worrying about micromanaging people after a few years of academia.
That’s a good idea. Send message > Message signed and sent > Receiver opens message, signature bits are hidden, but clicking report sends plaintext with signature included. Only ends up in report queue if signature is valid.
Ah I should have taken into account that I am grandfathered in from the AT&T takeover. That makes more sense.
T-Mobile prepaid. Mint mobile is also very cheap, but I think there is one cheaper now.
85 per phone? did you get suckered into a contract+new “free” iPhone or something? I pay 40/mo for unlimited everything in the States but could be paying 25-30 if I wanted to switch providers.
SMS message costs are a scam, always have been. It takes like 1-2 seconds worth of talk time for the same amount of sending a text.
Thanks for the correction.
I believe that is the case, if you inspected the HTTP headers and found if to show Linux instead of Windows. my last experience with that would have been years ago. Arch does like to compile things from source instead of using binary blobs, and compilers and configs can undo a lot of the work the torproject has done to combat fingerprinting, which is why it’s recommended to run the pre-built binary and install no plugins. However it’s important to note that it ALSO gives you a unique JavaScript fingerprint every time, when tools use as much information as possible to generate a fingerprint, because it generates new information on every reload. That’s why OPSEC is important and for can’t help you if you use it wrong. If you login to 2 different unlinked sites in the same session, and you don’t want them to be linked, too bad now they’re linked via JS fingerprinting. JavaScript is more or less a programming language within the browser, and you’ll never escape JavaScript fingerprinting. Which is why it’s important to learn how to use tor properly, and leave JS disabled as much as you can.
One thing you can do with your arch build is use the fingerprinting tool to see how unique you are, then get a new identity, then go back and do it again. Does it now say you’re one of 2 people who have used the tool, or does it show you’re (again) unique? If the latter, then it’s working (at least enough) properly.
Tor browser from the arch repos is not stock torbrowser. Add repos for torproject/guardian project/whatever it’s called now, or use the torproject.org installer.
Every wild dog will chase and eat prey and their own poop, and attack any dog that challenges them or their pack.
Every wild cat will chase and catch their prey, and then play with it while keeping it alive for a while until it ultimately dies.
Humans are basically dogs or cats that have 1000’s of societal incentives not to chase and play with prey, drilled into most of us from the beginning, but everyone still has that innate ability that will come out under the right circumstances. If civilization ended today, who you think you are, and what you think you are not capable of today, ends today.
There are many things you can do with JavaScript, and tor can only protect against so many without completely breaking many sites. Set your slider all the way to maximum and it will no longer detect windows, but it will very likely also no longer run.
They make it a whole lot harder, asking for photos of ID and selfies and bank statements directly from your bank, etc.
Amazon specifically. Unsure about other sites.
you never had any dark thoughts? Never did anything bad?
Yes, you might not be doing this particular bad thing.
You: Yeah sure, but I never did this particular bad thing.
Welcome to the species, bud. We’re all a little mad here.
They can, but before (we learned from the Snowden docs) they had to have a legal reason and request a warrant if it was an American citizen, unless there was imminent harm. Now they don’t require that warrant.
New features get released into the developer preview. It’s basically beta test windows. It’s what the tech sites watch to see what new features/etc have been added/removed/changed. Usually they end up making it into the release builds, but sometimes they end up not doing it, or the change doesn’t apply to certain regions.
He’s not being cloak and dagger. He’s an old guy (double spacer spotted) who works in the military or private sector under NDA and can’t talk about it.
Or he’s LARPing. But the double spaces make me believe him.
It’s much better to go through the list of data brokers manually and submit your information twice a year, if you have the time. Like doing taxes, but for privacy.
There’s a whole lot of caselaw surrounding this, and they will get someone to destroy the pipes to find out when they were flushed (their word goes, good luck finding someone impartial to say that wasn’t what happened). I wish court cases were built on 1’s and 0’s like computer code but that’s just not the way the world works.
That’s not completely true. In most states if they are knocking down your door with a search warrant and you flush a kilo of heroin down the toilet, you’re getting an evidence tampering charge that will hold up in court.
Sucks that I have to preface but people can be jumpy here. This is genuine curiosity, I’m actually asking, because it’s really probably something I should already know. Can you explain the nuance to me please?
My understanding, speaking mostly of apps/websites, I know jobs can be much different:
Most places have the first factor as a password.
First factor (or “login”) = username+password pair.
For the longest time that was all there was, “your login” was just a login, which meant a username and password combination. Then 2FA/MFA (“2 factor authentication / multi-factor authentication”) came along in the form of username+password combo plus SMS/email/Google Authenticator/Yubikey/etc to verify as the 2nd form of authentication. You can have 3FA 4FA 5FA whatever if you want and if it’s supported by the app/website. So 2FA is MFA, but MFA is not necessarily 2FA.
I know jobs can be set up a lot differently.