@LunaDragofelis@fedi.criminallycute.fi cover
@LunaDragofelis@fedi.criminallycute.fi avatar

LunaDragofelis

@LunaDragofelis@fedi.criminallycute.fi

It/its or she/her. Autistic plural system of female meltcats (plasmacats) in 24 year old human, mixed race black, male body. I'm from Augsburg, Germany and I like programming and transportation.

I'm looking for other people who identify with meltcats or similar creatures. Together we can research our species.

Follow requests and DMs welcome. Ask me anything. Favs on negative posts are interpreted as support. Prone to make social mistakes, please have patience.

I reblog a lot, but also make own posts. Often I reblog something I think might be interesting to my followers, without fully reading it myself.

Sometimes lewd, always CW'd if I don't forget. I don't care if you're a minor, interact at your own judgement.

Profile avatar: Face of a grey furred cat girl from the side, with teal gradient hair and a grey scarf, on a teal and grey checkered background.

Profile banner: My cat Yuki (brown tabby cat) lying on his back on my bed next to the wall.

This profile is from a federated server and may be incomplete. For a complete list of posts, browse on the original instance.

briankrebs , to random
@briankrebs@infosec.exchange avatar

Apple is an innovative company that is widely emulated around the world. But the advanced security of its products and their associated user accounts remain highly vulnerable to compromise because AFAICT Apple will not let you remove a mobile phone number from your account.

I've long advised readers to move away from relying on phone numbers for ANY form of authentication, and I've written time again about how many companies require a mobile number on signup, but allow you to remove the number from your profile after the account is set up. This is advisable if you have the option for more robust forms of 2FA, like security keys, app-based or OTP/push authentication.

The reason for this advice is that phone numbers are not great for security or authentication (they are transient and not property you control) and your phone company will not help you if one of their employees is tricked into navigating to a phishing page and giving away credentials that allow thieves to sim-swap your number to a device they control, and then request password reset links via SMS to all your important accounts.

But it doesn't seem like you can do that with Apple. And it's leading to stuff like this, without giving victims much in the way of anything they can do about it -- except maybe change their number to another number that isn't already tied to their identity.

https://krebsonsecurity.com/2024/03/recent-mfa-bombing-attacks-targeting-apple-users/

As a heavy Apple user, I hope I am wrong about this and that someone will set me straight. Because this is really bothering me right now.

LunaDragofelis ,
@LunaDragofelis@fedi.criminallycute.fi avatar

@GossiTheDog @briankrebs Risk of locking myself out is the main reason why I oppose mandatory MFA.

FediTips , (edited ) to random
@FediTips@social.growyourown.services avatar

There is a built-in translation system on Mastodon. If it's present on your server, you will see a "Translate" link below posts in other languages. Clicking the link will translate the post.

However, translation systems cost money to run, so not every server has it activated. If you're unsure whether your server has it or not, ask your admin. (You may also consider donating to them to help with their server bills.)

LunaDragofelis ,
@LunaDragofelis@fedi.criminallycute.fi avatar

@WhiteCatTamer @FediTips On Akkoma I can set the language for every post

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines