this post was submitted on 10 Oct 2023
29 points (93.9% liked)

Privacy

31982 readers
255 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

In a few weeks I'll do a workshop about security for people who are tech illiterate, I plan to teach about password managers and 2FA.

If I show the 2FA number codes, like the 123 456 ones that I have to paste when required, can that be a possible security breach for me? or is it save since is gonna change in a few seconds anyway?

you are viewing a single comment's thread
view the rest of the comments
[–] sirico@feddit.uk 3 points 1 year ago (5 children)

Why would you not have all your demo stuff in a throwaway VE. I would personally just set up a 2FA on something pointless and empty, like a blank proxmox install. Use a separate authenticator for tutorials or just use images that are already out there.

I've entered some 2FA codes about 20 seconds after refresh before, so yeah there is a risk.

[–] vis4valentine@lemmy.ml 2 points 1 year ago (4 children)

is there some useless service that I can use to ser up a 2FA for a demo?

[–] Lemjukes@lemm.ee 1 points 1 year ago (2 children)

Is this being taught in a computer lab or will the students all have laptops or smartphones? If so I would almost be tempted to just walk them through all creating a temporary email address and then setting up 2fa on the accounts. But yeah Gmail accounts.

[–] vis4valentine@lemmy.ml 1 points 1 year ago (1 children)

where can I find temporary mails that have 2FA logins?

[–] Lemjukes@lemm.ee 2 points 1 year ago* (last edited 1 year ago)

You can create endless Gmail accounts for free and google has several different 2fa options to choose from. So you could make one '2faClassDemoEmail@gmail.com' or have each person on their own device create dummy Gmail addresses like 'StudentName2FADemo@gmail.com' and have each student go through the process individually. They would only be temporary in that you'd just stop using it after the class and google would eventually get rid of it(maybe?) After long enough without any use. I don't think you're going to find something that just generates dummy 2fa codes for demo purposes.

load more comments (1 replies)
load more comments (1 replies)