Send password reset email after too many failed logins versus X minutes of lock out

Some sites lock me out for a while after too many failed attempts.
For our own site, we want to force a password reset email after X amount of failed attempts. After all, if your email is compromised, then everything is compromised.
Furthe… Continue reading Send password reset email after too many failed logins versus X minutes of lock out

Two factor authentication turned on for my Google account (Phone) – but still hacked

I just got a message today that someone changed my password on my Google account.

The email seems legit, and Google confirmed there was a login from Ukraine two weeks ago in recent activity.

The password change that happened today occurr… Continue reading Two factor authentication turned on for my Google account (Phone) – but still hacked

With uploading to AppStores – what problem do all the certificates fix above Two Step Authorization?

So if you ask around on the internet you see a lot of people frustrated with the whole signing and certificate jungle when trying to upload apps to the App Store. Of course on this channel for a lot people it’s probably quite… Continue reading With uploading to AppStores – what problem do all the certificates fix above Two Step Authorization?