Librarian's Letter to Google Security
41–50 of 484 posts
Re: Librarian's Letter to Google Security
#42Re: Librarian's Letter to Google Security
#43Re: Librarian's Letter to Google Security
#44Re: Librarian's Letter to Google Security
#45Re: Librarian's Letter to Google Security
#46Can the library set up Google authenticator codes for all of their emails and look after the authenticator codes on behalf of their users? Or is SMS the only possible second factor authentication method?
Re: Librarian's Letter to Google Security
#47Re: Librarian's Letter to Google Security
#48If I were a Google engineer, this would read like one of dozens of pleas we get constantly to change X, Y, or Z for some small portion of the served population. And software devs in general find those demands annoying, particularly given some of the language that Shelley uses.
I think this would have gotten more reach and been better received if Shelley had a co-writer that acknowledged the reasons for 2FA from a security standpoint and emphasized the trade-offs that are being made + suggest other security measures. Likewise, having someone with a better understanding of tech would mean being able to do things like present some solutions that don't amount to "Oh most magic of Google Oracles, please fix this." Also the suggestion that they could contact her to learn about where patrons get stuck made me cringe slightly.
Basically, there's a misaimed moralizing tone throughout the letter that I think is at odds with its stated purpose, and it could have been written better, but the problem is real.
Re: Librarian's Letter to Google Security
#49Re: Librarian's Letter to Google Security
#50Earlier quoted context omitted.
This has been an issue for years. (I've worked in libraries, including public ones, on and off since 2004). It's not just a GOOG problem. In fact, Yahoo makes me want to show up and yell at some business people: They lock people out of their accounts and then CHARGE THEM TO CALL IN and fix it. Another general issue is how much of this population uses/sticks with old products: There is a large number of Yahoo, AOL, an…
Agreed on Yahoo and ISP emails being awful, but Microsoft migrated all the hotmail users over to Outlook years ago. At this point, there is only a cosmetic difference between a hotmail.com email and a outlook.com email. I'm normally not a big Microsoft fan, but that was one change they handled reasonably well.
MS did well on this one, I agree. (And I also hate MS but credit where credit is due.)