(no title)
throwaway03626 | 2 years ago
I have these layers of protection between the web page and the actual code.
1. Github password
2. Github MFA
3. SSO password
4. SSO MFA
If an attacker wants to be successful, they probably need to actually use my machine as I suspect that both Github and the auth solution at work checks ip-addresses and other things that they would also need to get hold of. In that case they probably have complete control of my machine anyway and can do what they want.
No comments yet.