Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I've had my eBay account suspended two or three times. All of them was because of suspicious activity in that I was using a VPN. I had to connect with someone on their customer support team to get it unlocked. I guess that's understandable if someone else using the same IP address is doing something malicious, but I think this could all be avoided if they set up sane 2FA measures.

Just yesterday I logged in and it prompted me to choose how to receive a code - email or SMS. I chose email, received the code then entered. Then, they told me I had to authenticate again via SMS.

I really wish they would implement standard software based TOTP so I could use something like Aegis or passOTP.





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: