Earlier quoted context omitted.
If you attempt to use a credit card that you haven't used in years, the bank will similarly ask you to verify your identity. I don't think it's weird that unused valuable accounts need re-identification when you start to use them again. I don't mind anti-spam measures in cases which are common spam techniques. Hijacking unused accounts is common enough to warrant an approach like this.
> the bank will similarly ask you to verify your identity I doubt that. The bank will either cancel my account long before that, or it will work. > Hijacking unused accounts is common enough Ah, yes, for all my 20 or 30 followers, can’t have them see a single image, and of course, the hijackers also hijack the computer those accounts are from, so the IP belongs to the same entity it always did.
They make decisions in milliseconds on each purchase to determine whether it might be fraud. This includes looking at past purchase history to see if this transaction is unusual.[1]
[1] https://usa.visa.com/visa-everywhere/security/outsmarting-fr...