[854] in Privacy_Forum

home help back first fref pref prev next nref lref last post

[ PRIVACY Forum ] Google introducing optional 2-factor login security

daemon@ATHENA.MIT.EDU (privacy@vortex.com)
Mon Sep 20 14:41:52 2010

Date: Mon, 20 Sep 2010 11:25:10 -0700
To: privacy-list@vortex.com
Message-ID: <20100920182510.GA28481@vortex.com>
MIME-Version: 1.0
Content-Disposition: inline
From: privacy@vortex.com
Reply-To: PRIVACY Forum Digest mailing list <privacy@vortex.com>
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: privacy-bounces+privacy-forum=mit.edu@vortex.com
Content-Transfer-Encoding: 8bit



Google introducing optional 2-factor login security
http://www.nnsquad.org/archives/nnsquad/msg04281.html


http://bit.ly/bW3jrQ  (Official Google Enterprise Blog)

This is indeed a very useful feature, and it's unfortunate that more
sites (particularly financial institutions) don't offer it to most
customers.  While the initial deployment is for Google Enterprise
Apps users, it will reportedly become available to all users within
some months.

A number of persons sent me notes this morning suggesting that this
announcement was an attempt by Google to divert attention from the
recently revealed Barksdale case -- involving a Google engineer accused
of illicitly accessing teenagers' Google data ("In Perspective:
Alleged Snooping at Teens' Data by Google Engineer":
http://bit.ly/9WkmTd (Lauren's Blog).

The "diversion" scenario seems highly unlikely -- and wouldn't be
successful in any case.  The Barksdale situation isn't going to just
vanish under the weight of a specific login security announcement,
which is essentially orthogonal to the specific issues involved in
that matter.  Also, login security deployments like that announced
today require considerable planning over periods of time.

That said, I would be remiss if I didn't note that multiple-factor
(actually, multiple-person) access and notification techniques of
various sorts are frequently applicable to environments where internal
access to customer data needs to be rigorously controlled.

--Lauren--
Lauren Weinstein (lauren@vortex.com)
http://www.vortex.com/lauren
Tel: +1 (818) 225-2800
Co-Founder, PFIR (People For Internet Responsibility): http://www.pfir.org
Co-Founder, NNSquad (Network Neutrality Squad): http://www.nnsquad.org
Founder, GCTIP (Global Coalition for Transparent Internet Performance): 
   http://www.gctip.org
Founder, PRIVACY Forum: http://www.vortex.com
Member, ACM Committee on Computers and Public Policy
Lauren's Blog: http://lauren.vortex.com
Twitter: https://twitter.com/laurenweinstein
Google Buzz: http://bit.ly/lauren-buzz

_______________________________________________
privacy mailing list
http://lists.vortex.com/mailman/listinfo/privacy


home help back first fref pref prev next nref lref last post