Is Passwordless Authentication Safe?

  Рет қаралды 10,215

Ask Leo!

Ask Leo!

Күн бұрын

Пікірлер: 25
@askleonotenboom
@askleonotenboom 3 жыл бұрын
How can it even work?
@rs3370
@rs3370 7 ай бұрын
Can you tell me, what brand is that orange speaker on the shelf in the background? Thanks!
@askleonotenboom
@askleonotenboom 7 ай бұрын
@@rs3370 Ha! That's a 40+ year old Speakerlab .1 -- Speakerlab was a local company back in the day. :-)
@ー-ーー
@ー-ーー 10 ай бұрын
Passwordless with microsoft can go horribly wrong since there isnt two factors then giving someonr the first factor and they have full access and can change security info
@HoD999x
@HoD999x 9 ай бұрын
yubikey ftw
@alecfry9127
@alecfry9127 3 жыл бұрын
Email with a link is only one option for Passwordless. There is MFA within other Passwordless options that have no issues like the email delay issue.
@sanchithaseshadri2166
@sanchithaseshadri2166 2 жыл бұрын
The only factor of auth being used here is your email, so this isn't really using MFA. If the email service provider (eg: Gmail) is compromised, a bad actor can access your email and therefore get access your Medium account. One way to mitigate this is using another factor of auth such as an OTP texted to your phone via. This is more secure because while it's somewhat likely that either your email can be broken into or your phone can be stolen, the likelihood of BOTH occurring is negligibly small.
@glasslinger
@glasslinger 3 жыл бұрын
I use it on my lesser accounts. But not on my paypal or bank account. The accounts use my computer I.D. Of course anyone using my computer could log in but it is not likely at all.
@Mike_v_E
@Mike_v_E 2 жыл бұрын
I currently use a password and the Authenticator app. If my password gets hacked, they still need the authenticator access. On trusted devices I already only have to use the app, instead of a password. I’m still trying to figure out how passwordless is more convenient and safe
@rafaelguerrero1715
@rafaelguerrero1715 2 жыл бұрын
🥲 actually there is a way to get around, just with the password that is why I was looking for passwordless info :c
@HoD999x
@HoD999x 9 ай бұрын
google "yubikey"
@StijnHommes
@StijnHommes 5 ай бұрын
Amazing! A video of more than 8 minutes and nowhere do you mention the correct answer to the question in the title... 4:00 Medium not having a password means that if you lose access to your original email account, you also will no longer be able to log into Medium. A false sense of security should not have to come at the risk of losing your account completely because there is no sensible password backup available to get in. 5:00 Instead of password reuse, you have email reuse. All a hacker has to do, is fake up an email to get you to log in to a fake site and provide your personal information there. 7:30 And let's not forget that you are not the only person who has emails that get stuck and take ages to arrive, which means people can no longer log in at a moment's notice.
@vru-x5m
@vru-x5m 2 жыл бұрын
Thank you! Why do you not generally recommend signing in with third-party services, e.g. Google which itself may be strong enough with 2FA enabled whereas the initial website may lack 2FA option?
@askleonotenboom
@askleonotenboom 2 жыл бұрын
Because if you lose access to your Google account, OR if that Google account gets hacked, then ALL the associated accounts you've used it to login with are impacted.
@vru-x5m
@vru-x5m 2 жыл бұрын
@@askleonotenboom understood, thanks! But in your example with the link which is sent to email for login, the problem is basically the same
@ChibiKeruchan
@ChibiKeruchan Жыл бұрын
​@@vru-x5m ​because some website create a fake pop up sign in to google which will send you to a fake google log in page. where you enter your gmail and password and that's it.. you got hacked. but hey if you sign up there and use the same password as your gmail then that's the same thing. 😂😂 this is why they always remind not to use the same password on all your account. and google hates it coz they are being blamed for google account getting hacked even if they have very secure server. it's not their fault if you got hacked from other website. this is why 2FA become a standard. even if both you and the hacker have the password, he can't get through the 2FA.
@larkc7677
@larkc7677 5 ай бұрын
Thank you for this information, very helpful. For now, I’m sticking with two-factor authentication using a strong password first. I simply don’t have confidence in this password-less method, especially with my Microsoft account.
@iAmScope2
@iAmScope2 Жыл бұрын
PASSWORDLESS is safe for me because it removes the need to hide my password somewhere OFF of the local computer and the fear of losing that document
@Northstar-Media
@Northstar-Media 6 күн бұрын
Im getting lots & lots of sign in attempts spamming my microsoft account trying to log in. I've changed my email used to log in, which as helped a little until they adapt is their anyway to mitigate these attempts its like fighting the Borg ..Shields uo ✨️
@miguelmesa4692
@miguelmesa4692 2 жыл бұрын
Awesome Explication really I understood very well, and I will follow your comments, thanks
@Matt15199
@Matt15199 Жыл бұрын
Honestly my email account has been getting hacked into let me just say Microsoft/outlook security sucks.
@AnjuJain-e5x
@AnjuJain-e5x Жыл бұрын
Fir apne kya kiya
@MansoorAli-f3r
@MansoorAli-f3r 2 ай бұрын
Superb
@andreialcaza
@andreialcaza 2 жыл бұрын
Interesting video you are right its not perfect
@markanderson2155
@markanderson2155 3 жыл бұрын
Excellent explanation and I concur with your opinion about 2 form factor being gold. I prefer it myself. However if I loose my phone or stolen it does put a damper or chink in the armor. Or even an Issue with email. I use both authenticator apps, SMS and email with most that would allow it.
What is a Passkey?
18:05
Ask Leo!
Рет қаралды 138 М.
How Can Passkeys Possibly Be Safe?
21:47
Ask Leo!
Рет қаралды 42 М.
To Brawl AND BEYOND!
00:51
Brawl Stars
Рет қаралды 17 МЛН
UFC 310 : Рахмонов VS Мачадо Гэрри
05:00
Setanta Sports UFC
Рет қаралды 1,2 МЛН
Personal Disaster Quiz + Passwordless  Authentication
11:37
IBM Technology
Рет қаралды 5 М.
SCAM 2FA Apps!
15:18
Naomi Brockwell TV
Рет қаралды 80 М.
NEVER install these programs on your PC... EVER!!!
19:26
JayzTwoCents
Рет қаралды 4,8 МЛН
MFA/2FA Showdown: Which Authentication Factor is Best?
16:27
Pro Tech Show
Рет қаралды 16 М.
7 Cybersecurity Tips NOBODY Tells You (but are EASY to do)
13:49
All Things Secured
Рет қаралды 1,2 МЛН
Enable Passwordless Authentication with Microsoft Authenticator
10:24
vCloudBitsBytes
Рет қаралды 2 М.
What’s the Best Two-Factor App?
9:23
Ask Leo!
Рет қаралды 29 М.
Passwordless Authentication: Weighing the Options
11:41
IBM Technology
Рет қаралды 22 М.
To Brawl AND BEYOND!
00:51
Brawl Stars
Рет қаралды 17 МЛН