Changing Password Every Login Easier Than Remembering Password
13
Alternate Authentication Methods - for Attackers
14
Recovery with 2FA enabled
15
2FA recovery
16
Tabletop Scenario #4
17
Unhappy Story
18
Potential Mitigations
19
First steps
20
Ongoing steps
21
Tabletop Scenario #5 - Account discovery
22
Considering death
23
Personal observations - 1/2
24
Personal mitigations - 1/3
25
Keep good records
26
Personal mitigations - 3/3
27
Personal mitigations - parallels
28
Conclusions - 2/2
29
Questions/Discussion
Description:
Explore the complex challenges of modern authentication systems in this 31-minute conference talk from linux.conf.au. Delve into the unintended consequences of enhanced security measures, such as password managers, two-factor authentication, and randomized security questions. Examine how these improvements can inadvertently complicate account recovery, especially in cases of user incapacitation or death. Consider the delicate balance between strengthening authentication security and ensuring legitimate account access for trusted associates or bereaved family members. Analyze various scenarios, potential solutions, and personal mitigation strategies to address these emerging issues in the evolving landscape of digital identity and account management.
Authentication Afterlife - The Dark Side of Making Lost Password Recovery Harder