• AmbitiousProcess (they/them)@piefed.social
    link
    fedilink
    English
    arrow-up
    277
    ·
    4 days ago

    This is really bad even just from the perspective of user behavior. Training people to scan QR codes from anything that looks like a captcha box is HORRIBLE for security.

    “Thanks for scanning the code, just one more step! Please input your phone number, and type in the code you receive.”

    Boom, account stolen.

    • LeapSecond@lemmy.zip
      link
      fedilink
      arrow-up
      21
      ·
      4 days ago

      And the phone number thing is already happening too. Google, discord and probably other stuff already ask for a phone number to prove you are a human when they flag your account.

      • InFerNo@lemmy.ml
        link
        fedilink
        arrow-up
        5
        ·
        3 days ago

        It’s a server setting. one of my oldest servers has enabled this and I haven’t chatted with anyone there anymore because I need to verify my phone first.