53°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Rod Begbie https://twitter.com/rodbegbie   •   Jul 6
    Yes. They’ve triggered a password reset email, and now want you to hand over the code so they can take over your account.
    Aaron Parecki
    Exactly, which is why we need to make strong non-phishable MFA much more accessible and stop using SMS for this
    Auckland • 56°F
    Wed, Jul 6, 2022 5:57pm +12:00
    1 reply
    • Nelson Minar twitter.com/nelson
      I don't know if Twitter uses SMS for auth or not; mine is using a TOTP token. Twitter does have some protection against spurious password resets but I think it boils down to "do you know the email address for the account" which, well, of course anyone can guess that for me.
      Wed, Jul 6, 2022 1:20pm +00:00 (via brid.gy)
Posted in /replies using indigenous.abode.pub/ios

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv