Re: Wiki 2FA

From: Peter Geoghegan <pg(at)heroku(dot)com>
To: Magnus Hagander <magnus(at)hagander(dot)net>
Cc: Greg Stark <stark(at)mit(dot)edu>, "Joshua D(dot) Drake" <jd(at)commandprompt(dot)com>, PostgreSQL WWW Mailing List <pgsql-www(at)postgresql(dot)org>
Subject: Re: Wiki 2FA
Date: 2016-01-23 23:26:56
Message-ID: CAM3SWZT+PYarQHo4z_3i-6fmbMXkgQ=uu5y3DYE4yQJTr-3BgQ@mail.gmail.com
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-www

On Sat, Jan 23, 2016 at 1:50 PM, Magnus Hagander <magnus(at)hagander(dot)net> wrote:
> We have a captcha for account singups already. That increased the signup
> time by 30-45 seconds on average.

I think that it's now economical for spammers to farm out the
completion of captchas. Real people actually fill them out, with
everything else highly automated. I'm not sure how much of the work
performed by the Amazon Mechanical Turk service is actually filling
out captchas, but it's certainly some proportion. (The whole concept
of Mechanical Turk is downright creepy in my view).

--
Peter Geoghegan

In response to

Browse pgsql-www by date

  From Date Subject
Next Message Tom Lane 2016-01-23 23:35:41 Re: Wiki 2FA
Previous Message Joshua D. Drake 2016-01-23 23:25:52 Re: Wiki 2FA