Was sind zeitbasierte Einmalpasswörter (TOTP, time-based one-time password) und wie kann ich die mit z.B. EnteAuth-App mal testen, weil ich mir unsicher bin?

Dazu fiel mir bei "Digitale Selbstverteidigung" nicht viel ein, was ich den Leuten mal kurz zeigen könnte.

Also habe ich für zukünftige Kurse eine Demo-Seite gevibecoded:

https://www.datenteiler.de/2fa-demo/

Es wird nix gespeichert, nur für die PHP-Session, die vor Ablauf selbst gelöscht werden kann.

#digitaleselbstverteidigung #2fa #totp

Sicheres Login-Portal

RE: https://lile.cl/@uchileradio/116581663223552354

¡Excelente! Era justo lo que le faltaba al sistema de clave única para darle mayor seguridad. 👏🏻

#ClaveÚnica #2FA #Chile

I worked at a Hollywood Video when I was a teenager. I quickly became an expert of the 10-key keypad—from entering in customers' phone numbers to bring up their accounts.

Today, I use that skill to enter in 2FA codes on my computer all day long.

#2FA #hollywoodvideo #keyboard

Two-factor authentication (2FA) is one of the most widely recommended security measures.

But what happens when the experience is frustrating or unreliable?

We’re exploring this tradeoff in our latest Polis.

👉 Share your perspective: https://pol.is/8udrjxfbnh

#DigitalSecurity #2FA #PublicInterestTech #CivicTech

Heads up: new Google support scam uses a REAL email from Google: sysadmin

최근 구글 지원팀을 사칭하는 고도화된 스팸 사기가 실제 구글 이메일 주소를 이용해 발생하고 있어 주의가 필요합니다. 공격자는 구글의 SPF 레코드에 등록된 서버를 통해 이메일을 발송하며, 2단계 인증(2FA) 정보를 탈취하려 시도합니다. 피해를 막기 위해 출처가 불분명한 전화나 이메일에 응답하지 말고, 의심스러운 메시지는 [email protected]으로 신고하는 것이 권장됩니다. 또한, 전화 스팸 차단 기능과 자동 응답 AI를 활용하는 사례도 공유되고 있습니다.

https://old.reddit.com/r/sysadmin/comments/1tdezhu/heads_up_new_google_support_scam_uses_a_real/

#security #phishing #google #emailspoofing #2fa

An article by TechTimes covers VPNs, password managers, HTTPS, secure DNS, and 2FA for reducing tracking and improving account security. 🔒
It also highlights privacy-focused browsers, stricter permissions, and safer browsing habits that strengthen user control over online data. 🌐

🔗 https://www.techtimes.com/articles/316454/20260509/how-browse-safely-online-best-security-privacy-tools-protect-your-data.htm

#TechNews #Privacy #Cybersecurity #VPN #PasswordManager #2FA #HTTPS #DNS #OpenSource #Encryption #Security #FOSS #Tracking #Browsers #DigitalRights #Cybersecurity #Freedom #Surveillance

How to Browse Safely Online: Best Security and Privacy Tools to Protect Your Data

Safe browsing tips and tools to protect online privacy, secure web browsing, use VPNs, password managers, HTTPS, and 2FA for stronger internet security.

Tech Times

@scheich @teezeh Mein #2fa App verlangt das auch. Und die läuft ohne #playservices. Und die #camera App auch, logischerweise. Das die PS danach fragen, klingt seltsam. Stell mal Screenshot hier rein.

Und falls du noch eine 2FA App ohne googleplay suchst: https://getaegis.app/

Aegis Authenticator

Aegis Authenticator is a free, secure and open source app for Android to manage your 2-step verification tokens for your online services.

O Google bloqueou a capacidade de reCaptcha sem usar Google Play Services, o que cria um problema pra quem não pertence ao ecossistema deles. Sistemas operacionais que não o usam, como GrapheneOS ou LineageOS, ficarão em uma situação de desgraça.

#grapheneos #lineageos #recaptcha #google #captcha #keepandroidopen #2fa #youtube #googleauthenticator

🚨 AI wygenerowało exploit zero-day. Ominięto 2FA w popularnym narzędziu

Google zidentyfikowało pierwszy w historii exploit zero-day, który prawdopodobnie został stworzony przez AI. Atakujący ominęli uwierzytelnianie dwuetapowe w nieujawnionym narzędziu administracyjnym.

https://cyberowi.pl/ai-wygenerowao-exploit-zero-day-ominieto-2fa-w-popularnym/

#ai #zeroday #2fa #google

#cyberbezpieczenstwo