Skip to content

WindowsTechs.com

Collaborate Disseminate

Menu

Primary menu

  • Home

Author Archives: Bradford Griggs

Is 2FA based on Google Authenticator Real?

Posted on September 1, 2021 by Bradford Griggs

I was reading this response on SE about 2FA:

Well, I hate to break this to you, but Google Authenticator plus
password isn’t really two-factor authentication. Proper 2FA is two
separate items out of traditionally the triad "something… Continue reading Is 2FA based on Google Authenticator Real?→

Posted in authentication, multi-factor, passwords, web browser

Forget Me Not? Abandoning the Forgot Password Functionality

Posted on August 31, 2021 by Bradford Griggs

They say a chain is only as secure as its weakest link. When it comes to account security it seems to me that the Forgot My Password functionality is the weakest link in the security chain because it only requires an attacker to gain acces… Continue reading Forget Me Not? Abandoning the Forgot Password Functionality→

Posted in Account Security, authentication, password management, password reset, passwords

Your username can only be changed once?

Posted on August 30, 2021 by Bradford Griggs

I’ve seen quite a few security centric sites enforce this policy:

Your username can only be changed once

My question is: Is this done from a security standpoint? If yes, what is the logic behind it? My initial impression is that once you… Continue reading Your username can only be changed once?→

Posted in Account Security, authentication, credentials, user-names, web-application

Do fowarded emails retain DMARC protection?

Posted on August 10, 2021 by Bradford Griggs

Assume I ask someone to create a filter in their Gmail account that automatically forwards certain emails to my inbox. If the original email was protected with DMARC, would the forwarded email also be protected? Or does it lose the protect… Continue reading Do fowarded emails retain DMARC protection?→

Posted in DMARC, email, Email Spoofing, gmail | Tagged spoofing

Is it Safe to Rely on Gmail API to Reward Users for Placing Orders on Merchant Sites?

Posted on August 8, 2021 by Bradford Griggs

I have an application that rewards users for placing orders with certain merchants. In order to verify that the order was actually placed and delivered, a user is required to grant us read access to a new Gmail Inbox that is created and sh… Continue reading Is it Safe to Rely on Gmail API to Reward Users for Placing Orders on Merchant Sites?→

Posted in Account Security, email, Email Spoofing, Fraud, gmail

Primary Sidebar Widget Area

Infocon Status

Internet Storm Center Infocon Status

Recent Posts

  • After using these JBL headphones, I’m wondering if we’re all too distracted by Sony and Bose April 14, 2026
  • Booking.com data breach: Customer reservation data exposed April 14, 2026
  • Binary Defense expands NightBeacon with threat-aligned Detection Coverage Index April 14, 2026
  • Booking.com Confirms Data Breach as Hackers Access Customer Details April 14, 2026
  • SAP Patches Critical ABAP Vulnerability April 14, 2026

Tag Cloud

Agriculture Alzheimer's Disease Art Audio Automation Bluetooth Building and Construction Campervan Camping Cancer Coronavirus (COVID-19) Cycling Dementia Diabetes DNA Electric Vehicles Food Home House Huawei Indiegogo MIT Mobility Moon New Atlas Audio NVIDIA Off-grid Off-road Pedal-assisted Photography Physics Radio Repair RV Samsung Satellite Sony SpaceX spoofing sustainable design The Immune System Tiny Footprint Training Water Zoom

Archives

  • Facebook
  • Twitter
  • Linkedin
  • Email
Copyright © 2026 WindowsTechs.com. All Rights Reserved.
Theme: Catch Box by Catch Themes
Scroll Up