That won't really help -- if someone can intercept your email, it's trivial for them to request a password reset themselves, wait for the email to be sent, and then enter the code. Any system that relies on an email is vulnerable to this kind of attack, but at least anything that doesn't send the password in plaintext (and uses a one-time link) prevents someone from accessing your account when they read your email sometime later after you've made the request yourself. Systems that rely on a "secret question" or some such are more secure, but are basically just a second password (and usually a not very good one, since many of the questions are vulnerable to dictionary attacks or are things that could potentially be found out about you), which means you can forget the answer to them, too (especially if they're implemented with restrictions on what the answers can be, as many WTFs have demonstrated). Biometrics are probably the best way to go in the long term, but it'll be a long time before the technology to do that is sufficiently deployed, even though it exists today. (And even biometrics have problems -- what happens when you severely burn your hands, and now you can't access your bank account to boot?)
tirerim
@tirerim
0
Reputation
1
Posts
20
Profile views
0
Followers
0
Following
Best posts made by tirerim
This user hasn't posted anything yet.
Latest posts made by tirerim
-
RE: Neteller...