FREN

#FF00AA


6 jun. 2023

Would someone like to explain to me how “sign in to your iPhone using any email address or phone number listed in your account” isn’t a horrible thing for security?

I know, they added “Securely” at the start of the sentence, but you don’t achieve security with words, and I don’t understand how you can do email auth — never mind phone-number auth — without *massively* undermining security.

Zero benefit of the doubt after the “steal your AppleID with two taps on an unlocked iPhone” kerfuffle.

Want to know when I post new content to my blog? It's a simple as registering for free to an RSS aggregator (Feedly, NewsBlur, Inoreader, …) and adding www.ff00aa.com to your feeds (or www.garoo.net if you want to subscribe to all my topics). We don't need newsletters, and we don't need Twitter; RSS still exists.

Legal information: This blog is hosted par OVH, 2 rue Kellermann, 59100 Roubaix, France, www.ovhcloud.com.

Personal data about this blog's readers are not used nor transmitted to third-parties. Comment authors can request their deletion by e-mail.

All contents © the author or quoted under fair use.