Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

There are cases when people lose access to emails. They should require snail mail as additional factor to recover an account and change emails.


Losing access to email isn't a problem if the mail sent to the old address is just "this account was migrated to X, click here if this was in error to have the change reverted". If the email account has been lost then it is no problem, if the attacker has access to your email too then you're up a creek either way.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: