Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Along with 2-factor auth, what about the option to block all IPs from outside of a certain country (if you live/work in the US, only allow US logins).

This obviously won't work for everyone, but might prevent a decent amount of brute force successes.



Facebook detects this when you move countries and makes you do a quiz about your friends pictures - though it can be pretty annoying [though I haven't seen it recently so maybe they've stopped].


I just dealt with this today with my own account using a proxy, quite a clever security approach IMHO




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: