• kadu@lemmy.world
    link
    fedilink
    arrow-up
    2
    ·
    4 months ago

    GabeN once leaked his password on purpose to prove how secure Steam Authenticator was, before people were familiar with 2FA.

  • Scrubbles@poptalk.scrubbles.tech
    link
    fedilink
    English
    arrow-up
    0
    ·
    4 months ago

    I appreciate they took the time to do this. Still though, when was the last time you changed your steam password? Regardless of this it never hurts to update it

    • slazer2au@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      4 months ago

      Been over a decade.

      Nist says if the account is protected by MFA password expiry isn’t needed.

    • blindsight@beehaw.org
      link
      fedilink
      arrow-up
      0
      ·
      4 months ago

      Nah. The need to regularly change passwords is unnecessary. If you use a sufficiently long password, unique passwords for every site, and 2FA/MFA for “important” logins, then you’re good.

      Businesses requiring their staff to regularly cycle passwords is outdated and makes their systems less resilient, since it opens more angles for social engineering attacks or password security carelessness.

      • Scrubbles@poptalk.scrubbles.tech
        link
        fedilink
        English
        arrow-up
        1
        ·
        4 months ago

        I’m not saying every three months, but after 5-7 years like me, it’s probably just a good idea. Who knows what devices have the passwords saved on it still