So called "two-factor" authentication on the internet pretty much means entering two different passwords. I've never seen anyone attempt anything more complicated than making people remember what ultimately amounts to yet another password. Certainly not on a free website.
But even financial websites pretty much provide a dumb questionnaire list with challenges like "what was your first dog's favorite color?" to which you can choose any kind of text string as a response ("bark" for example).
Does anyone honestly believe that these things provide additional security? It's like the TSA frisky-crotch-grope of authentication.
But even financial websites pretty much provide a dumb questionnaire list with challenges like "what was your first dog's favorite color?" to which you can choose any kind of text string as a response ("bark" for example).
Does anyone honestly believe that these things provide additional security? It's like the TSA frisky-crotch-grope of authentication.