Upgrade your Discord Account Security!

Поділитися
Вставка
  • Опубліковано 19 лип 2024
  • Discord released a brand new update available to everyone that allows you to make your Discord account more secure. But it does have some drawbacks and it's not going to allow you to dive head first into discord without your brain enabled.
    Discord scams have been extremely prevalent, and general good practice says that we should always secure our important accounts with two factor authentication. But there are drawbacks, your 2FA code could be phished through a devious Discord login page. Only if there was a system that could make it nearly impossible for a normal person to fall for a phishing page...
    SOCIALS
    -----------------------------------------------------------------------------
    Discord Server
    / discord
    Twitter
    / notexttospeech
    TIMESTAMPS
    -----------------------------------------------------------------------------
    00:00 - Security Keys!
    00:45 - 3 Reasons why security keys are better
    01:51 - 2. Backed up in the cloud
    02:44 - 3. Easy to use
    03:27 - How it works
    04:29 - Set up and Use
    06:48 - Drawbacks
  • Наука та технологія

КОМЕНТАРІ • 617

  • @breadmachine_official
    @breadmachine_official 8 місяців тому +396

    *HEADS UP!*
    Passkeys with QR codes are safer than the Discord login QR codes because the device connects to the PC via Bluetooth. This means if you don't have Bluetooth built-in to your PC or you don't have a USB Bluetooth adapter, the QR code will not appear to log-in.

    • @Paul_11232
      @Paul_11232 8 місяців тому +20

      ​@@nanopiyou not existing helps too

    • @suryasrivastava8174
      @suryasrivastava8174 8 місяців тому

      Yes

    • @suryasrivastava8174
      @suryasrivastava8174 8 місяців тому

      Jk 1:52

    • @BobOrKlaus
      @BobOrKlaus 8 місяців тому +8

      Thank you, if noone told me it doesnt work without bluetooth I would have sat here wondering why it doesnt work for me

    • @candianatan
      @candianatan 8 місяців тому

      xd. Its fun but it happend to me too a time ago@@BobOrKlaus

  • @rhettorical
    @rhettorical 8 місяців тому +413

    As always, security comes down to users being stupid far more than anything a hacker could come up with.

    • @clipbitlocker
      @clipbitlocker 8 місяців тому +2

      .... or old. Wait till you 5 years older. Then you learn how hard it is to keep up.

    • @BigJemu
      @BigJemu 8 місяців тому +33

      @@clipbitlocker skill issue

    • @bloosixjr7505
      @bloosixjr7505 8 місяців тому +2

      No lol. Data leaks on other websites are very common, and if you reuse a single password, that could get your account compromised.

    • @clipbitlocker
      @clipbitlocker 8 місяців тому

      @@bloosixjr7505 Correct and data leaks and data breaches happen for 2 main reasons. There's an insider (social engineering) or people are so old that they are not aware of safe cybersecurity practices. How many people out there have a grandma/grandpa that has been tricked by scam?

    • @davemiller638
      @davemiller638 8 місяців тому +8

      @@bloosixjr7505 What if I reuse a married password?

  • @Kodufan
    @Kodufan 8 місяців тому +95

    A little thing about the analogy. The two numbers will be prime numbers, meaning that the result has one and only one set of two numbers to make it. It is really, REALLY hard to crack. You basically need to just guess and check

    • @maxomega3
      @maxomega3 8 місяців тому

      very well put. His explanation was spot on except for this

    • @supramaxis
      @supramaxis 8 місяців тому +1

      once i saw this comment i thought of the modular multiplicative inverse operation

    • @alizardguy
      @alizardguy 8 місяців тому +1

      omg kodu haiiii

  • @Pengal25
    @Pengal25 8 місяців тому +58

    That gaming computer just to watch UA-cam was the biggest callout

    • @nostalgicumbry3279
      @nostalgicumbry3279 8 місяців тому +2

      I feel so seen. Bought a new computer a few years ago just to play runescape and watch youtube.

    • @SonOfSparda03
      @SonOfSparda03 8 місяців тому

      I bought a top of the line PC and I only play league so pretty much yea

    • @OriginBullet
      @OriginBullet 8 місяців тому

      I feel personally attacked 😅

  • @crowruin2
    @crowruin2 8 місяців тому +206

    For anyone wondering you can use just Security Keys as 2FA
    You do not need to have TOTP as a backup
    Also remember to save those backup codes in-case you lose your Yubikeys

    • @D0Samp
      @D0Samp 8 місяців тому +3

      The same way you should have saved your recovery codes for 2FA before, by the way. Otherwise, passkeys only swap out your password (which has relatively little entropy compared to the usual public-key system) for a challenge-response authentification.

  • @Maxime-fo8iv
    @Maxime-fo8iv 8 місяців тому +26

    Fun fact: You don't have to "wait until the code refreshes because you can't type the numbers fast enough because you only had 2 seconds left to put them in" (2:49): just enter the code that you see and it will just work, even after the code disappeared!

    • @MasicoreLord
      @MasicoreLord 8 місяців тому +8

      from my experience not long after it disappears that code would have expired, assuming the device you were using's clock is synced closely

    • @chlorobyte_projects
      @chlorobyte_projects 8 місяців тому +9

      Indeed. That authentication system actually checks 3 separate codes - the one for the current time, and the one before and after, so assuming your system time is synced up, that code will work for a whole 30 more seconds.
      ...and now you know that it's technically a 3 in 1000000 chance to guess the code rather than 1 in 1000000.

    • @MasicoreLord
      @MasicoreLord 8 місяців тому

      @@chlorobyte_projects didn't realize Discord did that, guess it makes sense, since it increases the reliability

    • @FlipPlayzYT
      @FlipPlayzYT 8 місяців тому

      so a 1/333333 chance@@chlorobyte_projects

  • @Schwanz250
    @Schwanz250 8 місяців тому +39

    I never thought Discord would think about our security

    • @aeswere
      @aeswere 8 місяців тому

      @@VaultCord I think checking the device hardware/whatever would also help, or whenever a page is reloaded it checks if the device is still the device prior to loading, having you reauthenticate if whatever marker they use is changed. I'm sure there's probably a simpler way but this sounds secure, no?

  • @chazthecheeseguy
    @chazthecheeseguy 8 місяців тому +315

    Cool! I love securing my account! Good job Discord.

    • @TheRealMatthewYT
      @TheRealMatthewYT 8 місяців тому +3

      Same

    • @raiban0
      @raiban0 8 місяців тому +53

      Npc

    • @wedner_12
      @wedner_12 8 місяців тому +8

      @@raiban0 💀

    • @Acgpro1Aymir
      @Acgpro1Aymir 8 місяців тому +9

      @@raiban0you just said the same message twice did you ai glitch? (Joking btw)

    • @chazthecheeseguy
      @chazthecheeseguy 8 місяців тому +4

      @@raiban0 huh?

  • @kmcat
    @kmcat 8 місяців тому +45

    4:18 that's not quite right, It generate a semi prime number, the program is looking for two prime number multiplied together that equal the semi prime number from before .
    I'm sure this using U2F which is using Challenge response authentication
    6:31 SIM swapping is a bit pointless as under laying protocol SS7 has a simple SMS redirection vulnerability; that's never getting fixed due to governments using the flaw

    • @rokenato.
      @rokenato. 8 місяців тому

      dang

    • @ThatOneKitsune
      @ThatOneKitsune 8 місяців тому

      gotta love the govt causing security issues

  • @elliejohnson2786
    @elliejohnson2786 8 місяців тому +2

    I literally just completed a course on cyber security and it talks about these in great detail :D

  • @n3er0o
    @n3er0o 8 місяців тому +6

    4:44 there is a little annoyance here with Windows 10 (if you're still using that). Sometimes a window will pop up asking you for your Windows PIN when instead you want to register a physical security key. You need to click cancel on that popup and *only then* the window you show in the video here pops up asking you to confirm your security key. Make sure the setup makes you touch your security key's button or otherwise you just set up Windows Hello with your (probably) very weak Windows password.

  • @Shakkael
    @Shakkael 8 місяців тому

    I understood that great analogy very well! Good job!

  • @MoonLightOfficialOwO
    @MoonLightOfficialOwO 8 місяців тому +6

    I love your vids! Keep it up, please, and I hope you're taking care of yourself :D
    nice analogy 💗

  • @atake176
    @atake176 8 місяців тому

    It's such a discord moment. Implementing a log in method that prevents phishing, and leave a thing that is abused by scammers and bypasses your new secure method. God I love discord

  • @nico1337
    @nico1337 8 місяців тому +32

    I'm using a NitroKey 3A NFC (plus a NitroKey FIDO2 as a backup) because they are fully open source (hardware and software) instead of YubiKey. They do have some drawbacks tho

    • @darwinpolio
      @darwinpolio 8 місяців тому +1

      whats the drawbacks? might get one

    • @nico1337
      @nico1337 8 місяців тому +3

      ​@@darwinpolio YubiKeys are just more well-known and might be better supported. But I can only tell one instance where only YubiKeys were allowed, and that was on Kraken (kinda niche, trading platform). As far as I understand, FIDO2 is a standard, so it's not really a restriction because they can't support others - just because they want to.
      Then NitroKeys are a bit more expensive and the setup for YubiKeys might be a bit easier as they have a bit better fledged out software.
      Just do your own research, but these are no actual drawbacks for my personal taste.

    • @freshcutbackup380
      @freshcutbackup380 8 місяців тому +3

      security shouldnt be open-source

    • @nico1337
      @nico1337 8 місяців тому

      @@freshcutbackup380 Security by obscurity is not actual security.

    • @electricz3045
      @electricz3045 8 місяців тому

      ​@@freshcutbackup380it should. You never ever want to use something poopiotary.

  • @Blakegamer7000
    @Blakegamer7000 8 місяців тому +3

    To be honest I stopped using Discord a few months ago because I just didn't feel safe on there I use better apps instead.
    But it is nice to see that they're finally adding precautions for this kind of stuff because my old old account got hacked years ago

    • @TechnoMasterBoy
      @TechnoMasterBoy 8 місяців тому

      Didn't feel safe? What are you sharing, military secrets or some shit?
      Get a good password, it's not hard to make one that's easy to remember AND secure.
      And don't be a brainlet clicking on every link and downloading every file someone sends you.
      If you get hacked, it's your own stupidity that's at fault.

    • @hi-kt3qr
      @hi-kt3qr 8 місяців тому +6

      Most of the time being hacked is your fault, you used a password that can easily be guessed

  • @thenextworstone9050
    @thenextworstone9050 8 місяців тому +1

    3:54 Nice analogy!

  • @Khipher
    @Khipher 8 місяців тому +9

    As someone who uses the flipper zero’s U2F feature as a security key for literally everything that I can possibly use it for, I see this as an absolute win (I just like using my silly little cybersecurity pentesting device)

  • @faddybasilisk09
    @faddybasilisk09 8 місяців тому +2

    Nice analogy mg 💪💪

  • @bemsbilou
    @bemsbilou 8 місяців тому +23

    I didn't know that scammers can now trigger and ask for 2FA through a fake login page. That's kinda scary. Nice analogy btw 👌

  • @mihai.ro09
    @mihai.ro09 8 місяців тому

    Hey man I discovered you and I really like your content I’m going to subscribe to you man I really enjoy your content

  • @frogybot
    @frogybot 8 місяців тому

    MAN I *LOVE* sticking till the end!
    I get my hugs and kissies :3

  • @Dragon359
    @Dragon359 8 місяців тому +10

    While it was (in relative terms) a more mild hacking I suffered with a discord keylogger, morning grogginess and luck on the end of a hacker who sold me the 'my friend is making a game' while speaking through a friends account he hacked...that was making a game, got my account hacked.

    • @GurkenbauerTim
      @GurkenbauerTim 8 місяців тому

      Had a similar situation. Bought something overseas (smth from kickstarters) and I was waiting until it finally shipped to me. Then I get an email "Delivery failed, verify address". Luckily I thought about messaging the sender and he told me they didn’t start the delivery and that they still had to prepare my package.

  • @lowwastehighmelanin
    @lowwastehighmelanin 8 місяців тому

    EFFING FINALLY. I admin several servers I needed this ages ago.

  • @KARMA.XD.
    @KARMA.XD. 8 місяців тому +2

    "On that gaming pc you use to watch youtube" Never felt so called out before lmao

  • @wojtekpolska1013
    @wojtekpolska1013 8 місяців тому +4

    5:38 uh oh you just showed your backup keys publicly on youtube, this makes it so that anyone can login into your account now by using the backup keys to reset the passkey

    • @BurgerChurger
      @BurgerChurger 8 місяців тому

      obviously he regenerated them lol

  • @BasicsCodingg
    @BasicsCodingg 8 місяців тому

    "on that gaming computer you use to watch youtube" i dont like how accurate this is

  • @bk_bro11
    @bk_bro11 8 місяців тому

    Actually not that bad of an analogy. I assume you were explaining hashing and if if you were you explained it almost perfectly.

  • @sawrams
    @sawrams 8 місяців тому +1

    with windows hello you also can use pin code to make security key, did that myself on my youtube- i mean gaming laptop

  • @user-ed4ql5ky8m
    @user-ed4ql5ky8m 8 місяців тому

    For the people that don't have devices with biometric lock features, you can use your Windows PIN as well if your logged into your Microsoft account

  • @Original_Pedi_Boy
    @Original_Pedi_Boy 8 місяців тому +1

    in South Africa, i have my Sim Swap set up with my provider that i have to go to my provider store and pysically be present to perform a sim swap, cant be done on the phone and you have to have my physical ID

  • @nikowolfbilger
    @nikowolfbilger 8 місяців тому

    nice analogy mate!

  • @NorthWARail
    @NorthWARail 8 місяців тому +3

    I just had my account hacked two days ago i got it back yesterday because discord surprisingly responded in a matter of 1 hour and ik trying to reactivate 2FA but it wont let me. Should i just do the security key thing?

  • @Vlame
    @Vlame 8 місяців тому +4

    I reported like 6 websites and a Discord server who has this phishing method. the discord server got deleted but 2 hours later a new one was created with the same name and invite link.
    This method was also done using a fake captcha bot. Unfortunately Discord doesn't do anything about it

  • @ThatOneNo-Name
    @ThatOneNo-Name 8 місяців тому +2

    Made security key. Thanks NTTS.
    Nice analogy btw.

  • @Aurro727
    @Aurro727 8 місяців тому

    thank you, very cool mr discord man
    also nice analogy

  • @robindenkik
    @robindenkik 8 місяців тому +15

    5:38 maybe blur these codes lol (unless you generated new ones)

    • @pizzabossxd
      @pizzabossxd 8 місяців тому

      was about to say that lol

    • @TheDragonmasterk
      @TheDragonmasterk 8 місяців тому

      Yeah, seriously please generate new ones

    • @ishid_anfarded_king
      @ishid_anfarded_king 8 місяців тому +1

      it looks like a burner account anyway he wouldnt have lost anything valuable lol

    • @CaptOfWolves
      @CaptOfWolves 8 місяців тому

      Throw away account

  • @petertrex
    @petertrex 8 місяців тому +3

    Actually you can just use your PC's pin, which is pretty convivnient too.

  • @semihguner1
    @semihguner1 8 місяців тому +9

    5:38 you SHOULD hide those codes, people can log in using those

    • @george1717
      @george1717 8 місяців тому

      Was just going to comment the same thing

    • @GurkenbauerTim
      @GurkenbauerTim 8 місяців тому +1

      He probably changed them after recording the video.
      It even says that generating new backup codes makes the old ones invalid

  • @irisbaggins
    @irisbaggins 8 місяців тому

    Oh, this made me realise I had sms on, which I THOUGHT I'd turned off. Thanks for reminding me :)

  • @ccgm_harpy
    @ccgm_harpy 8 місяців тому

    I've had a yubico key for a while, happy Discord finally added support. Now my bank needs to get on board!

  • @OneAndOnlyZekePolaris
    @OneAndOnlyZekePolaris 8 місяців тому

    At 7:30 but that is with every business and phone app devs. Look at what phone apps ask permission for without telling you what permissions are needed.

  • @Lucaplayz200
    @Lucaplayz200 8 місяців тому +1

    Nice analogy now hopefully your self esteem is better

  • @1HKNG
    @1HKNG 8 місяців тому

    Nice analogy!

  • @GeneTv
    @GeneTv 8 місяців тому

    nice anology. Another way of explaining this is that a public key is like a picture of your signature (you know how it looks like but not how to create it). Your private key is the path which the pen will go when writing your signature.
    Now, when you log in to a website that you created the key-pair for, the website will send you a unique challenge (basically a text) every time you log in. When using your biometrics, you allow the browser to use your private key to create a signature. The browser sends back the challenge text with the signature and the website verifies that it's the correct challenge with your correct signature. Even if someone would be able to capture the signed challenge text, they would not be able to use it a second time, since the challenge is different each time.
    Also, scanning that passkey qr code (not the Discord one) with your phone, doesn't sent the actual private key to the computer. Your phone connects via bluetooth, get's the challenge from your computer, uses the private key which is stored on your phone, signs the challenge and sends back the signed challenge to the computer so that the computer can send it back to Discord.

  • @aceofaces
    @aceofaces 8 місяців тому +5

    Quick tip: Windows 11 has the option for a device as a passkey on Windows Hello. You can pick that option and enroll the phone's passkey. It will even remember your phone to quickly pick it as an option.

  • @TheAnimeLurk
    @TheAnimeLurk 8 місяців тому

    At first I was mad at being called out with the gamer pc to watch youtube, but then I was able to put him in his place as I logged in using my webcam with Windows Hello. Thanks for the tip!

  • @anouaro.a7905
    @anouaro.a7905 8 місяців тому

    Nice Analogy❤

  • @watch_dog_genesis
    @watch_dog_genesis 8 місяців тому +3

    Although getting a security key would seem like a good idea, but let's look at it with different eyes:
    -it's another new way of putting smth private under a same lock and key with a master key held up by a creator of said lock and key;
    -you can add your phone/any gadget to that key, but if you lose it/ it gets stolen, you out of luck;
    -all it does is giving a minor setback to hackers, and once it gets passed, we have to think of new ways to secure data;
    All in all, all those security keys and such are for people who uses their account for business(or popular people, eg youtubers), there's no need for such things for normal people, all it does is gives you more paranoia with each new update for security measures.
    At the end of the day, a lock is there to keep an honest folk away, if you have a goal to bypass that lock, you will get it eventually.

    • @schwingedeshaehers
      @schwingedeshaehers 8 місяців тому

      > At the end of the day, a lock is there to keep an honest folk away, if you have a goal to bypass that lock, you will get it eventually.
      thats corrent in the "real" world, but not to that degree in the "virtual" world.
      there is crypto, that is mathematically secure at least for now, (takes trillion of years to crack)

  • @DerpBurgerPlayz
    @DerpBurgerPlayz 8 місяців тому +1

    nice analogy

  • @erinalasacarina
    @erinalasacarina 8 місяців тому

    what a wonderful analogy

  • @depressedraccoon
    @depressedraccoon 8 місяців тому

    nice analogy mate

  • @MarioDarkboom
    @MarioDarkboom 8 місяців тому

    Nice Analogy :)

  • @lepershing1902
    @lepershing1902 8 місяців тому

    Nice analogy!

  • @vodkacsaa
    @vodkacsaa 8 місяців тому +3

    u did not forget to regenerate ur 8 character security codes right?

  • @Kaedahara
    @Kaedahara 8 місяців тому

    Nice analogy 😊

  • @Stoned_Penguin
    @Stoned_Penguin 8 місяців тому

    your outro is hella weird but the content is too good to have a sweet kiss scare me away... 😘

  • @SolarizedPhoenix
    @SolarizedPhoenix 8 місяців тому +10

    For those who just want ELI5 in security keys;
    The public key is used to encode a message to send to the private key owner. Discord sends your computer a specific question (Challenge) and your PC, with the private key, can read and answer this challenge.

    • @killingtimeitself
      @killingtimeitself 8 місяців тому

      presumably through reverse pub key it would encrypt it and send it back, unless of course the challenge is non critical. not familiar with the specifics there.

    • @erikkonstas
      @erikkonstas 8 місяців тому

      @@killingtimeitself Not sure what you're saying, but I'm pretty sure that your "reverse pub key" is, in fact, the private key, which is *EXTREMELY* difficult to get from the public key (this is how all of cryptography works, make it DIFFICULT for the attacker to gain the key).

    • @killingtimeitself
      @killingtimeitself 8 місяців тому

      i meant reverse pubkey as in reversing the direction of the transaction with another key set@@erikkonstas

    • @schwingedeshaehers
      @schwingedeshaehers 8 місяців тому

      if you are interessed in it, and know "basic" (probably at least prime, modulo and Fields, and how they are (mathematically) connected) math/Crypto things, it is not that hard

  • @cam4991
    @cam4991 8 місяців тому +1

    They should’ve added this years ago. People have been asking for security key support for a really long time

  • @markzuckerbread1865
    @markzuckerbread1865 8 місяців тому +2

    I feel like public-private key cryptography needs to be taught in every school these days, its something you use everyday and can benefit from understanding.

    • @hi-kt3qr
      @hi-kt3qr 8 місяців тому

      useless, not everybody is a geek

    • @walkacrossit
      @walkacrossit 8 місяців тому

      ​@@hi-kt3qrinstead they're dumbasses that fall for scams like these

  • @k3nt571
    @k3nt571 8 місяців тому

    Nice analogy 👍 , your welcome

  • @lzxty6024
    @lzxty6024 8 місяців тому +2

    dad when are you coming home with the milk

  • @Heufneutje
    @Heufneutje 8 місяців тому +3

    This is kinda cool but also kinda useless unless Discord starts requiring 2FA more. I found out the hard way that if your login token gets hijacked from your PC Discord will just let someone use that token to change the email address on your account without requiring you to reauthenticate.

    • @Heufneutje
      @Heufneutje 8 місяців тому

      @@VaultCord To be fair, I'd argue that changing your email address on your account should be inconvenient seeing how commonly it's abused by scammers to lock someone out of their account.

  • @techwhipped
    @techwhipped 8 місяців тому

    One thing left to ask is this useful even if someone has grabbed a person discord token.

  • @lajawi.
    @lajawi. 8 місяців тому

    I can't activate Touch ID on my iPhone as a Security Key, it asks to scan the displayed QR-code or use an external device (like a YubiKey).

  • @ttaylor-st
    @ttaylor-st 8 місяців тому

    Damn. Literally just migrated away from Discord and they rolled out this cool update... hopefully the Matrix team is working on this, haven't seen any issues/prs though.

  • @CZghost
    @CZghost 8 місяців тому

    I'm actually thinking of getting myself the Yubi physical USB security key. Honestly it's just a stick I can wear on my keys, and whenever I need to use it, I can just pull the keys out of my pocket, or simply just grab them off a shelf and insert it into the PC. I wear my keys almost all the time on myself. So it makes sense to put it on my keys. I have never lost my keys, there's of course the risk of that, but it's very low. Unless I get really drunk, the chance of losing my keys is next to zero.

    • @kaedenmurphy9937
      @kaedenmurphy9937 8 місяців тому +1

      Yeah, that's fair. It's still good to have peace of mind though, because the one day in your life that you *do* lose or damage your keys could be a very bad day if you lost access to all of your accounts.

  • @SyncronedStuff
    @SyncronedStuff 8 місяців тому +1

    I hope they are doing something like Roblox's announced "ROBLOSECURITY", which makes logging in via a cookie useless.

  • @patrikcath1025
    @patrikcath1025 8 місяців тому +5

    Aw yeah, now instead of 2FA (bad) I can use 2FA (good)!

  • @HeadshotOtaku
    @HeadshotOtaku 8 місяців тому

    2:49 I seen been long using the authenticator app browser extension, and based on my experience, is very convenient, since, I don't really use a mobile phone, and I can back up the authenticator keys from the browser extension, and copy paste directly from the browser. But this isn't ideal for anyone with different situations.

  • @Elementening
    @Elementening 8 місяців тому +1

    nice analogy

  • @nastroukapro
    @nastroukapro 8 місяців тому

    NTTS you don't need to blur QR codes because your phone connects to your PC/laptop with Bluetooth

  • @ggorg0
    @ggorg0 8 місяців тому +1

    Just wanna say, that if you use the discord desktop app it will not pop up the QR code for your phone

  • @Strudlll
    @Strudlll 8 місяців тому +1

    Bros catchphrase is we'll talk about that later

  • @Lampe2020
    @Lampe2020 8 місяців тому +1

    5:38 I hope you changed those after the video, because I think you shouldn't share your backup keys with the internet…

  • @FearsomeMarioBros
    @FearsomeMarioBros 8 місяців тому

    Nice analogy

  • @abbatrombonelol
    @abbatrombonelol 8 місяців тому +2

    The best security system is and always will be yourself

  • @CZghost
    @CZghost 8 місяців тому

    I find it funny you plugged in the "pi" in the number slot :D That's not gonna produce an integer, nope. :D

    • @sams_enfp
      @sams_enfp 8 місяців тому

      The floor function: Am I a joke to you?

  • @beanbeanjuice
    @beanbeanjuice 8 місяців тому

    I'm gonna need to do this for my rotisserie chicken later...

  • @georgidimitrov2557
    @georgidimitrov2557 2 місяці тому

    Thank you buddy 😉😉

  • @kubaolszewski890
    @kubaolszewski890 8 місяців тому +2

    It just dropped so have fun watching everyone

  • @meibear4921
    @meibear4921 8 місяців тому

    my brother has a passkey and he usually uses this with discord and that feature was there for him for like 2 months

  • @kunalsmh
    @kunalsmh 8 місяців тому

    Let's GO I paused before the kiss !!!

  • @byrd203
    @byrd203 8 місяців тому

    Sim swap will not work with me because of the passcode you have to have for my cell provider I enabled number lock I need it every time I activate a new line so sim swap fails for me

  • @byrd203
    @byrd203 8 місяців тому

    thats not the only way if you enable use pin on the account you can add a windows passkey I did this it works

  • @lovelivelex
    @lovelivelex 8 місяців тому +6

    imo they should add password to mobile app like signal, face id touch id or just password for it to unlock

    • @Milenakos
      @Milenakos 8 місяців тому +1

      have you considered just adding a password to your phone

    • @Milenakos
      @Milenakos 8 місяців тому +1

      i mean i do understand more things make you feel more secure, this is the reason people pay thousands dollars a year for antivirus

    • @ishid_anfarded_king
      @ishid_anfarded_king 8 місяців тому

      who the fuck is paying thousands a year for a fucking antivirus thats a fucking scam@@Milenakos

    • @lovelivelex
      @lovelivelex 8 місяців тому

      @@Milenakosi have password and ID on phone it would be just more secure if you could use ID or password on app directly. When someone borrows your phone and there’s private messages, you know what i mean

  • @Kyoya26
    @Kyoya26 8 місяців тому +1

    Yubikeys are so expensive in my country so, i'll have to pass this 😔

  • @OneAndOnlyZekePolaris
    @OneAndOnlyZekePolaris 8 місяців тому

    Yeah,,,, that SIM card thingy is old news. That is why my first phone has a slot for them but it does not have a SIM card in it. They are not even required the phone companies are just dumbing down security and installing malware anyways via remote.

  • @EnBunk
    @EnBunk 8 місяців тому

    A naked man fears no pickpocket.

  • @fayenotfaye
    @fayenotfaye 8 місяців тому

    Not sure if this is deliberate or not but you showed your backup keys at 5:38 might wanna reset them

  • @harryhack91
    @harryhack91 8 місяців тому +1

    I would like to point out that the stronger a security mechanism is against remote attacks, the weaker it is against physical ones. So, imagine you follow the Microsoft trend of going passwordless and use a hardware key instead. Now that key gets stolen... Opsie! Please, don't go passwordless, and use a password manager.

  • @souptaels
    @souptaels 8 місяців тому +16

    Discord just needs to change their internal login system. They can add as many security options they want, but if someone is able to grab your login token (which is really easy to do btw), then it's over either way cause just having that token bypasses everything.
    Edit: apparently this is how most websites work, whoops. still sucks how easy it is to get tho

    • @xE92vD
      @xE92vD 8 місяців тому +3

      this is how it is on every website. How do you think the website knows it is you.

    • @souptaels
      @souptaels 8 місяців тому

      ​@@xE92vDit is? ahh didn't know that

    • @Theinatoriinator
      @Theinatoriinator 8 місяців тому +4

      Unfortunately, if they did that then you would have to constantly resign into discord. The reason the tokens exist is that you don't have to resign, and that is how every website works.

    • @killingtimeitself
      @killingtimeitself 8 місяців тому +4

      @@Theinatoriinator we live in 2023 you can simply store that token in an encrypted form that is nearly impossible to crack. There is no good excuse for storing passwords and especially tokens in plain text.

    • @souptaels
      @souptaels 8 місяців тому +1

      ​​@@killingtimeitselfexactly. I'm sure there's a way to encrypt it or something. If a slight technical person like me can just find it using the developer console and the token is just there in plain text, I don't think that's a good thing.

  • @LoveMeKnot
    @LoveMeKnot 8 місяців тому +1

    when you found out you still not safe 😅

  • @arneschultz
    @arneschultz 8 місяців тому

    There are backupcodes on discord so it dosnt matter if you loose acces

  • @lucas13w
    @lucas13w 8 місяців тому +2

    me when security key

  • @DrSoftPawbs
    @DrSoftPawbs 8 місяців тому

    Gonna use my old Amazon staff yubi key for this

  • @orangeferdi
    @orangeferdi 8 місяців тому

    Finally!

  • @adorluigi
    @adorluigi 8 місяців тому

    nice analogy kid

  • @tom_606HQ
    @tom_606HQ 8 місяців тому

    5:38 I'm pretty sure you left your backup codes visable for us intentionally to get ppl like me to write sth like this and then reset them, but why is truly the question.

  • @Ruxian
    @Ruxian 8 місяців тому

    jokes on you i have an industrial grade fingerprint reader configured to my pc