1
submitted 11 months ago by aebletrae@hexbear.net to c/feedback@hexbear.net

Since the XSS incident a couple of weeks back, I hadn't been able to log in, or even sign up for a new account. All attempts at either ended with the spinning bear. Now, presumably because of the upgrade, I have been able to create a second account to post this, but I can't log in to my original account, AppelTrad, because it prompts for 2-factor authentication.

This is (partially) my own fault, I suppose, for clicking the checkbox and not mentioning that it didn't actually give me any of the promised results, while I was still logged in; since I was also able to untick the box without being prompted for anything, I just assumed it was a bit of not-yet-implemented UI and that I had reset the option for if it ever became effective, and carried on without any problems until the forced logout.

Since "2FA being broken is a known issue", I'm wondering: is it possible for an admin to reset that field in my database record (or whatever needs to be done to cancel 2FA) without any of the security shenanigans that should accompany working two-factor authentication, so I can successfully log in again? (I have my passwords saved, so it's not just a mistyped password issue.)

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here
this post was submitted on 23 Jul 2023
1 points (100.0% liked)

feedback

0 readers
1 users here now

Tell us how we're doing and report bugs. If you're technically inclined, please submit bugs to the chapo gitea project.

If you want to request a new community the place for that is over in !commrequest

All post must follow the Hexbear Code of Conduct.

Hexbear Warrant Canary

founded 4 years ago
MODERATORS