• UID_Zero@infosec.pub
    link
    fedilink
    English
    arrow-up
    8
    ·
    1 month ago

    Please don’t take those recommendations out of context.

    They also recommend MFA, but people only ever bring up the “no rotation” bit.

    • Zorsith
      link
      fedilink
      English
      arrow-up
      5
      ·
      1 month ago

      Are they at least recommending non-SMS MFA now?

    • linearchaos@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 month ago

      Emphasis was from the article, not mine.

      They also recommend not using knowledge based prompts, allowing at least 64: characters,