Hacker News new | ask | show | jobs
by hombre_fatal 2633 days ago
It's absolutely absurd that you cannot authenticate by proving that you're the one paying the account's bill before and after the credentials were changed.

This is a good reminder of how unprepared even large corporations like Amazon are for the reality of social engineering attacks.