Reply to post: Re: The bit that leaps out for me...

Twitter hackers busted 2FA to access accounts and then reset user passwords


Re: The bit that leaps out for me...

From my experience (in Edumacation), it is exactly the "very important people" who would insist that a single helpdesk person should of course be able to imMEdiately set a new password, without callback or other further identification, after all they already have the cheek of not giving out the original value of the password.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon