Two Factor Authentication Explained | Go Incognito 3.5

  Рет қаралды 54,874

Techlore

Techlore

Күн бұрын

Пікірлер: 66
@techlore
@techlore 5 жыл бұрын
Thanks for tuning in to Go Incognito! 🕵️‍♂️ 1) Go Incognito Premium has no ads, includes quizzes & guides, hundreds of improvements, a certificate, and much more! Support our mission & join the premium experience: techlore.teachable.com/p/go-incognito 2) To access the sources, changelog, GitHub repo, and more, visit Go Incognito's Homepage: techlore.tech/goincognito.html 3) To order Go Incognito merchandise, visit our Privacy Shop: teespring.com/stores/techlore-merch 4) Go Incognito is offered for free thanks to all of our supporters. Support Techlore and our mission today: techlore.tech/support.html
@techlore
@techlore 5 жыл бұрын
Ideally nothing? Brave is meant to be out of the box ready to go. If you want something that’s hardened, go to Firefox.
@qnyzrev6539
@qnyzrev6539 5 жыл бұрын
I have two questions. The Prism-break site says that you should not use Authy with a two-step app, why is that? prism-break.org/en/categories/android/Firefox add-on says that Ghostery should not be put, why is it? prism-break.org/en/subcategories/android-web-browser-addons/
@misterwinner8459
@misterwinner8459 4 жыл бұрын
Want Your Views on Aegis Authenticator If Possible compare Aegis Vs AndOTP
@Shayden52
@Shayden52 5 жыл бұрын
Hands down one the most informative security video series on the internet, that is also easy to understand. Love the changing backgrounds to indicate how hardcore the methods are! Keep it up, your content is unique!! ;D
@redeyesdrogon786
@redeyesdrogon786 5 жыл бұрын
2FA is very important. I learned a lot from this! Awesome video man! Love the videos
@techlore
@techlore 5 жыл бұрын
Thanks man!!
@Mic-Mak
@Mic-Mak 5 жыл бұрын
My biggest issue with 2FA apps is that a lot of online services require that you give them your phone nombre to enable 2FA with an authenticator app. I’m not comfortable with that.
@techlore
@techlore 5 жыл бұрын
What sites do this? I haven’t really experienced this issue.
@jamesedwards3923
@jamesedwards3923 3 жыл бұрын
@@techlore Yahoo.com
@fayojixe9925
@fayojixe9925 2 жыл бұрын
Twitch
@darwinsexplosions
@darwinsexplosions 5 жыл бұрын
Great video! I’ve been subscribed for a couple weeks now and I am really happy with the content!
@BLUU-qh2jf
@BLUU-qh2jf 5 жыл бұрын
5:07 - Is Authy really FOSS?
@techlore
@techlore 5 жыл бұрын
Not fully no. Check the changelog later tonight.
@goosty17
@goosty17 5 жыл бұрын
I literally love your channel. Such amazing content. Keep it up!
@piratebuddy4649
@piratebuddy4649 2 жыл бұрын
Can't find your telegram community link anywhere.
@techlore
@techlore 2 жыл бұрын
We don't recommend Telegram. We have a forum (recommended) and Discord. Let me know if you'd like those links!
@piratebuddy4649
@piratebuddy4649 2 жыл бұрын
@@techlore Got forum in your site, thank you for the community man.
@BunPentruTine
@BunPentruTine 3 жыл бұрын
Hello. What is your opinion about app based 2FA like Google Authenticator vs Prompt style 2FA. Wondering if any of them is different enough in security level or they're pretty much the same. Thank you.
@logwind
@logwind 4 жыл бұрын
how does the website know the code displayed in the auth app is correct? how is that synchronized?
@cesaraugustoseijasnino1624
@cesaraugustoseijasnino1624 4 жыл бұрын
You need also to talk about, what happen if your loss your phisical 2FA, Recovery codes?, where you store that codes?, in a password manager, encrypted in a cloud drive?, paper?.
@hamzehqatash6256
@hamzehqatash6256 2 жыл бұрын
Thanks a lot 🌹
@techlore
@techlore 2 жыл бұрын
You're welcome 😊 Thanks for all your nice comments!
@Psil0
@Psil0 3 жыл бұрын
Any tip on how to store backup codes for Authenthicator Apps? I'm worried about paper backup codes in case of a fire or something like that.
@esquilax5563
@esquilax5563 2 жыл бұрын
Store them in an encrypted file, and backup the file. 2 good options are your password manager's database, or a Veracrypt file container
@INdoFreakNesian
@INdoFreakNesian 3 жыл бұрын
Any recommendations for a MacOS 2FA app? Like Ravio for mac?
@trexcal3969
@trexcal3969 4 жыл бұрын
Your information is appreciated and valuable but I need to (see you using & setting up the app) - andOTP . I have no clue and completely no understanding of how this is supposed to work. I learn and understand better visually as opposed to reading or hearing. AND how will I be affected if lose cell ph after andOTP is set up ? PLEASE make video.
@jamesedwards3923
@jamesedwards3923 2 жыл бұрын
I agree sir. Plus you can encrypt the file. Via open-pgp or AES.
@RCdiy
@RCdiy 4 жыл бұрын
What happens if we lose our phone or the software gets deleted? Or we don’t have our phone with us? Say I went to another country I forgot to take my phone with me?
@stiventson4464
@stiventson4464 4 жыл бұрын
True, that's why I haven't use it yet, I would like another alternative
@mulletman1705
@mulletman1705 2 жыл бұрын
It matters which 2fa app you choose. Authy is not a good choice, it's closed source, it requires a phone number, there is no way to export 2fa codes for backup to usb memory stick, etc so if authy stops working over day you loose access to all your accounts.
@WanderingAroundAZ
@WanderingAroundAZ 3 жыл бұрын
The only problem with code generator apps is that if you have to reset your phone or you get a new phone, you have to jump through a bunch of hoops to get the 2FA setup on the new/reset phone.
@techlore
@techlore 3 жыл бұрын
Not really. Apps like Aegis & AndOTP have export/import functions which transfer all 2FA codes in a few minutes tops. You should actually export/backup your keys so you don’t lose them with your phone.
@fartsloudly4034
@fartsloudly4034 2 жыл бұрын
Authy took like two minutes for me when I was changing my phones.
@tryptex
@tryptex 5 жыл бұрын
I knew this was coming because I saw the thumbnail at the end of your last video :)
@2FAS
@2FAS 4 жыл бұрын
Thanks for the video!
@joepjoep9531
@joepjoep9531 Жыл бұрын
Regularly changing passwords isn’t even advised by NIST. It can easily make it even less secure than to set a very good one for multiple reasons
@RobertoGuillermoMartin
@RobertoGuillermoMartin 4 жыл бұрын
Which 2FA is better? Code via email or an app (Google authenticator, etc)
@techlore
@techlore 4 жыл бұрын
App
@bluesailormercury
@bluesailormercury 5 жыл бұрын
Handsomest KZbinr ever!
@joewger
@joewger 5 жыл бұрын
Excellent video! I had SMS and thought it was the same as an app like authy etc. . I just got messages to my phone and typed in the two code numbers and got access to my account. No QR code since I was on my laptop typing the numbers in to the sms box.
@thomasipad7719
@thomasipad7719 3 жыл бұрын
OTP Auth, not FreeOTP
@unclealig
@unclealig 3 жыл бұрын
nice vid. but still dont get, how these FOSS 2FA work in principle. when for example using google 2FA and i want to login into google, then google sends me a sms code, which they can confirm once i login with this data. how can a "3rd party" app like the FOSS ones give me a 2FA code, which google recognizes, if the code does not come from their app/side? thx
@vansolo9794
@vansolo9794 5 жыл бұрын
Nice work H
@robindabank6711
@robindabank6711 2 ай бұрын
Thanks
@jam6875
@jam6875 5 жыл бұрын
Best place to store backup codes?
@techlore
@techlore 5 жыл бұрын
No “right” answer. But I personally store them in a text document on a Veracrypt encrypted container.
@tonycornetta
@tonycornetta 5 жыл бұрын
Techlore Can you show us step by step on how you do this?
@techlore
@techlore 5 жыл бұрын
Here's my guide on creating a container: kzbin.info/www/bejne/eWOYh4p3fNFqitk Just move a text document into a container and you're good.
@ISOLATEDViRuS
@ISOLATEDViRuS 5 жыл бұрын
yubikey also offers a 2FA app: Yubico Authenticator. This requires the yubikey to have the 2FA accounts loaded onto the usb key, and a password to unlock the key to access the keys.
@dubesor
@dubesor 5 жыл бұрын
always make sure you have at least 2 devices/2 ways as second factor.. so many dumb people eg have 1 single iphone and then lose it and lock themselves out of their account for a month.
@IgnoreMyChan
@IgnoreMyChan 5 жыл бұрын
'Dumb people' of less technically skilled people? How could they know? At least now they know.
@techlore
@techlore 5 жыл бұрын
Yes, although that’s why you save backup codes, I’ll add this to the changelog. You could argue having two devices with the code is less safe though...as jeopardizing one of two devices leads to direct access to your 2FA code. The purpose of 2FA is ONE point only you have control over. Having cloud backups of 2FA codes and several devices lowkey lessens the purpose of 2FA. I’d argue less is more, just make sure to save backups!
@jamesedwards3923
@jamesedwards3923 5 жыл бұрын
You have to remember security is about layering. FIDO Keys, Software Authentication, and Backup Codes. Like he said, SMS should only be used as a last resort. FIDO Keys are great because all the online accounts I tried it on. Accept more than one key. So that means backups. Buy as many as you can afford and scatter them.
@jamesedwards3923
@jamesedwards3923 5 жыл бұрын
Man you are correct. Most of these people have money and time to set up all their recovery factors. Yet make no effort to do it.
@jamesedwards3923
@jamesedwards3923 5 жыл бұрын
@@IgnoreMyChan I am inclined to agree with him. Apple gives you to avenues of authentication. Two-Factor and Two-Step Verification, in my experience there are two types of Apple Users. IT Professionals and lazy users who think they are secure because they spent $2000 on a phone! When a $200 to $400 could do the same stuff. support.apple.com/en-us/HT204152?fbclid=IwAR2-vw6Hcd3kCnKG4syYPMReF_uvVphn5ZOeAyR8ss8vxRUKchRKlLNWsNk The problem free p, paid, or open source. It does not matter most users are lazy. I knew one Apple user who used SMS. Had no recovery email address. Had security questions. Nothing. He came to me for help. Again, most users do not care at all. Apple makes it easy to implement basic security.
@oooo0O0oooo
@oooo0O0oooo 2 жыл бұрын
What about aegis?
@techlore
@techlore 2 жыл бұрын
Aegis wasn't available when we made this video, but we do recommended it!
@martinusmoretti729
@martinusmoretti729 2 жыл бұрын
I'm Dutch and my government still uses SMS-2FA if you want to log in to platforms for civil affairs… I wonder which stupid ass is responsible for that. In any case, it just shows that not everyone is aware of where the risks are. Unbelievable that this is still happening at this level.
@2horneddemon842
@2horneddemon842 4 жыл бұрын
6:20
@georgefairweather1990
@georgefairweather1990 5 жыл бұрын
Ooo
@techlore
@techlore 5 жыл бұрын
Aaa
@georgefairweather1990
@georgefairweather1990 5 жыл бұрын
@@techlore Thank you for that
The Most Private Search Engines | Go Incognito 3.6
4:28
Techlore
Рет қаралды 40 М.
How to Stay Private on a Budget!
20:44
Techlore
Рет қаралды 43 М.
Every team from the Bracket Buster! Who ya got? 😏
0:53
FailArmy Shorts
Рет қаралды 13 МЛН
Andro, ELMAN, TONI, MONA - Зари (Official Audio)
2:53
RAAVA MUSIC
Рет қаралды 8 МЛН
Vampire SUCKS Human Energy 🧛🏻‍♂️🪫 (ft. @StevenHe )
0:34
Alan Chikin Chow
Рет қаралды 138 МЛН
10 Privacy Tools I Can’t Live Without
12:17
Techlore
Рет қаралды 66 М.
Top 10 Tools To Boost Privacy & Security!
8:47
Techlore
Рет қаралды 216 М.
Why I switched from Firefox…
9:38
Techlore
Рет қаралды 38 М.
The Dangers of Metadata! | Go Incognito 1.5
5:38
Techlore
Рет қаралды 50 М.
How To Communicate Safely Online | Go Incognito 3.15
8:38
Techlore
Рет қаралды 18 М.
Why You Don’t Need An Antivirus.
11:13
Techlore
Рет қаралды 13 М.
Does Privacy & Security Matter? YES! | Go Incognito 1.2
8:32
Minimalism: Less is MORE! | Go Incognito 2.2
8:04
Techlore
Рет қаралды 56 М.
Tor Explained | Go Incognito 4.5
6:48
Techlore
Рет қаралды 14 М.