Bitlocker නිසා Facebook එකට කෙලවෙච්ච උන් ඉන්නවද?

Rhapscallion

Well-known member
  • Aug 23, 2025
    1,035
    566
    113
    Siri Baijan
    Bitlocker_sucks_2025-11-04 at 12.24.25_3e0f847a.jpg


    Screenshot 2025-11-04 175224.png
     

    olu bakka

    Well-known member
  • Aug 18, 2011
    22,832
    23,519
    113
    ඒකනෙ මම ඔය authenticator app පාවිච්චි කරන් නැත්තෙ. Failed concept එකක්.
     

    Rhapscallion

    Well-known member
  • Aug 23, 2025
    1,035
    566
    113
    Siri Baijan
    ඒකනෙ මම ඔය authenticator app පාවිච්චි කරන් නැත්තෙ. Failed concept එකක්.
    Bitlocker එක පීසී එකේ පිස්සු කලෙපු හින්දා ප‌ෝන් එකට දැම්මා FB එක කාලෙකට පස්සේ. දැන් Account Recovery කරන්න කියනවා. අනික වින්ඩෝස් ෆින්ගර්පරින්ට් පින් නම්බර් වැඩ කරන්නෙත් නෑ දැන්.
     

    Monkey D Dragon

    Well-known member
  • Sep 22, 2024
    6,247
    6,748
    113
    East Blue (Goa Kingdom)
    ඒකනෙ මම ඔය authenticator app පාවිච්චි කරන් නැත්තෙ. Failed concept එකක්.
    authenticator app එක first time setup කරද්දී QR + QR එකේ තියෙන Base32 Secret Key එක plain text වලින් පෙන්නවා
    plain text එක ලියල තියා ගන්න ඕන 2FA app එකකින් code එක generate කර ගන්න පුළුවන් Base32 Secret Key එක දීල or JS වලින් තමන්ටම පොඩි code එකකින් browser එකේ inbuilt API එකෙන්ම වැඩ කරන 2FA එකක් හදල ඒකට Base32 Secret Key දුන්නම code එක එනවා (අදාල pc හෝ phone එකේ වෙලාවට හරි වෙන්න ඕන )

     
    Last edited:

    infernocus

    Well-known member
  • Jul 8, 2025
    3,306
    6,928
    113
    ඒකනෙ මම ඔය authenticator app පාවිච්චි කරන් නැත්තෙ. Failed concept එකක්.
    what do you mean by failed concept

    Almost all the identity providers, big companies uses this. This is one of the best 2FA mechanisms in the enterprise world.
    Google, Microsoft, Github, AWS, Amazon, GCP, Azure, FB, Twitter etc all big companies has first class support for authenticator apps. Out of all tech giants, only apple does not use this, but there password app has support for authenticator codes.

    Authenticator apps are very practical, and works even if your device is offline, I think passkeys will eventually replace all these multifactor things, untill then, this is one of the best 2FA methods we have.

    Authenticator eke accounts backup karanna puluvanda dan. QR backup karanna denne ne dan.
    It was always possible; it has been that way. You could back up and restore 2FA codes in the cloud using Microsoft Authenticator. But why was BitLocker mentioned? It has nothing to do with that.

    Yes, this option is still there. It is under transfer accounts > export.

    And if you are using google authenticator, you can sync to your google account, You don't have to backup/restore. You can simply install the app and login with google account and all the 2FA accounts will be synced your app.
    ------ Post added on Nov 9, 2025 at 3:19 PM
     

    MilkywayDoughnutsSeaMen

    Active member
  • Oct 17, 2025
    276
    213
    43
    what do you mean by failed concept

    Almost all the identity providers, big companies uses this. This is one of the best 2FA mechanisms in the enterprise world.
    Google, Microsoft, Github, AWS, Amazon, GCP, Azure, FB, Twitter etc all big companies has first class support for authenticator apps. Out of all tech giants, only apple does not use this, but there password app has support for authenticator codes.

    Authenticator apps are very practical, and works even if your device is offline, I think passkeys will eventually replace all these multifactor things, untill then, this is one of the best 2FA methods we have.




    Yes, this option is still there. It is under transfer accounts > export.

    And if you are using google authenticator, you can sync to your google account, You don't have to backup/restore. You can simply install the app and login with google account and all the 2FA accounts will be synced your app.
    ------ Post added on Nov 9, 2025 at 3:19 PM
    When you log in again, there is a restore option that you must use. If you choose the regular login instead, the entire backup will be deleted. According to them, this is a security measure.
     
    • Like
    Reactions: infernocus

    Rhapscallion

    Well-known member
  • Aug 23, 2025
    1,035
    566
    113
    Siri Baijan
    It was always possible; it has been that way. You could back up and restore 2FA codes in the cloud using Microsoft Authenticator. But why was BitLocker mentioned? It has nothing to do with that.
    හුත්තො ‌ම‌ෙහෙමයි. මේක තේරෙන්නේ නැත්තං සිංහලෙන් ඉංර්‍ගසියට පරිවර්තනය කරගනින්. මගේ පෝන් එකේ මෙමරිය ඉතුරුකරගන්න මම ෆේසබුක් එක ලැපට දාන් ඉන්නේ. ඊයෙ පෙරේදා වින්‌‌‌ඩෝස් අප්ඩේට් එකක් ගිහින් බිට් ලොකර් එකේ කී එක ඉල්ලනවා ලැප ඔන් කරද්දි. මම මගේ පරණ පෝන් එකට ඔ‌‌තෙන්ටිකේටර් එක හදලා තිබුනේ. ගිය මාසේ මම මගේ පෝන් එක මාරුකලා. අලුත් එකට තාම හැදුවේ නෑ. අළුත් එකට ගියාට දැන් Microsoft එකෙන් පරණ ගිණුම් ආපහු දෙන්නේ නෑ. දැන් කොහොම හරි ‌ෆ‌ේස් බුක් එකට අයි ඩී එක යවලා උන් අළුත් පාස්වර්ඩ් එකක් එවලා මම ෆ‌ේස් බුක් එක හදාගත්තා. හැබැයි තාම පරණ Microsoft Authenticator Code ගන්න බෑ.
     

    MilkywayDoughnutsSeaMen

    Active member
  • Oct 17, 2025
    276
    213
    43
    හුත්තො ‌ම‌ෙහෙමයි. මේක තේරෙන්නේ නැත්තං සිංහලෙන් ඉංර්‍ගසියට පරිවර්තනය කරගනින්. මගේ පෝන් එකේ මෙමරිය ඉතුරුකරගන්න මම ෆේසබුක් එක ලැපට දාන් ඉන්නේ. ඊයෙ පෙරේදා වින්‌‌‌ඩෝස් අප්ඩේට් එකක් ගිහින් බිට් ලොකර් එකේ කී එක ඉල්ලනවා ලැප ඔන් කරද්දි. මම මගේ පරණ පෝන් එකට ඔ‌‌තෙන්ටිකේටර් එක හදලා තිබුනේ. ගිය මාසේ මම මගේ පෝන් එක මාරුකලා. අලුත් එකට තාම හැදුවේ නෑ. අළුත් එකට ගියාට දැන් Microsoft එකෙන් පරණ ගිණුම් ආපහු දෙන්නේ නෑ. දැන් කොහොම හරි ‌ෆ‌ේස් බුක් එකට අයි ඩී එක යවලා උන් අළුත් පාස්වර්ඩ් එකක් එවලා මම ෆ‌ේස් බුක් එක හදාගත්තා. හැබැයි තාම පරණ Microsoft Authenticator Code ගන්න බෑ.
    Read my answer again. I mentioned the way to restore the credentials, but since you haven’t used that method, those credentials are now gone. Regarding the BitLocker issue, that is a separate matter. You could actually fix it easily—there are clearly written guidelines. Without doing anything correctly, there’s no point in shouting. Understand that first.
     

    infernocus

    Well-known member
  • Jul 8, 2025
    3,306
    6,928
    113
    Mama nam otp kamathith na. 4-6 digit ekak kanawata hari guess wunoth badu banis
    Authenticator app වල නෝමල් 6 Digit නේ, ඒක 30second වලට විතරයි වැලිඩ්. එහෙම එකක් guess කරනවා කියන එක ප්‍රැක්ටිකලි impossible නේ
     

    olu bakka

    Well-known member
  • Aug 18, 2011
    22,832
    23,519
    113
    what do you mean by failed concept

    Almost all the identity providers, big companies uses this. This is one of the best 2FA mechanisms in the enterprise world.
    Google, Microsoft, Github, AWS, Amazon, GCP, Azure, FB, Twitter etc all big companies has first class support for authenticator apps. Out of all tech giants, only apple does not use this, but there password app has support for authenticator codes.

    Authenticator apps are very practical, and works even if your device is offline, I think passkeys will eventually replace all these multifactor things, untill then, this is one of the best 2FA methods we have.




    Yes, this option is still there. It is under transfer accounts > export.

    And if you are using google authenticator, you can sync to your google account, You don't have to backup/restore. You can simply install the app and login with google account and all the 2FA accounts will be synced your app.
    ------ Post added on Nov 9, 2025 at 3:19 PM
    Yes very practical until you get your device lost.
    And what is even the point of using 2FA, if someone can log into your google account and have access to 2FA codes? Lol.
    Big companies like this method because they can cut off the OTP sms cost.
    SMS OTPs are the most reliable 2FA method.

    authenticator app එක first time setup කරද්දී QR + QR එකේ තියෙන Base32 Secret Key එක plain text වලින් පෙන්නවා
    plain text එක ලියල තියා ගන්න ඕන 2FA app එකකින් code එක generate කර ගන්න පුළුවන් Base32 Secret Key එක දීල or JS වලින් තමන්ටම පොඩි code එකකින් browser එකේ inbuilt API එකෙන්ම වැඩ කරන 2FA එකක් හදල ඒකට Base32 Secret Key දුන්නම code එක එනවා (අදාල pc හෝ phone එකේ වෙලාවට හරි වෙන්න ඕන )
    දැන් එහෙම දෙන්නෙ නෑ මම දන්න විදිහට. දුන්නත් ඕක අවුරුදු ගානක් නැති වෙන් නැතුව තියාගන්නව සහ වෙන කෙනෙක් අතට යන්න නොදී තියාගන්නව කියන්නෙ වෙනම ගේම් එකක්.
    Phone එකට OTP එන එක කොච්චර ලේසිද බන්. සිම් එක නැති උනත් අලුත් එකක් ඒ number එකටම ගන්න පුලුවන්. ඒ සිම් එක නැතුව වෙන එකෙක්ට ඒ කෝඩ් එක එන්නෙත් නෑ. Android, iOS වගේ OS ලේසියෙන් හැක් කරනව කියල දෙයක් කරන්නත් බෑ. මාර reliable.
    ------ Post added on Nov 9, 2025 at 5:36 PM
     

    sinhawanshaya

    Well-known member
  • Jul 28, 2024
    13,932
    11,368
    113
    Ekanan patta rare itin
    Authenticator app වල නෝමල් 6 Digit නේ, ඒක 30second වලට විතරයි වැලිඩ්. එහෙම එකක් guess කරනවා කියන එක ප්‍රැක්ටිකලි impossible නේ
    rare, impossible na, 1/1000000 (hithapan ekek OTP eka generate karala random number 439638 eka daanawa, oka 1/1000000 chance ekak thiyenawa ne guess karaoth. ekenuth 10000k withara halanna puluwan 000000, 111111....333555, 333444...666777, 223322, 443322, 553322... wage numbers, ithuru tiken random number eka generate karanawa, ekenuth ethakota 1/1000000 tath wada wadi wenawa probability eka (maths mathakai nam).

    SMS OTPs are the most reliable 2FA method.
    shorter the OTP, more unsafe it is.
    ------ Post added on Nov 9, 2025 at 5:38 PM
     

    Monkey D Dragon

    Well-known member
  • Sep 22, 2024
    6,247
    6,748
    113
    East Blue (Goa Kingdom)


    දැන් එහෙම දෙන්නෙ නෑ මම දන්න විදිහට. දුන්නත් ඕක අවුරුදු ගානක් නැති වෙන් නැතුව තියාගන්නව සහ වෙන කෙනෙක් අතට යන්න නොදී තියාගන්නව කියන්නෙ වෙනම ගේම් එකක්.
    Phone එකට OTP එන එක කොච්චර ලේසිද බන්. සිම් එක නැති උනත් අලුත් එකක් ඒ number එකටම ගන්න පුලුවන්. ඒ සිම් එක නැතුව වෙන එකෙක්ට ඒ කෝඩ් එක එන්නෙත් නෑ. Android, iOS වගේ OS ලේසියෙන් හැක් කරනව කියල දෙයක් කරන්නත් බෑ. මාර reliable.
    ehema thamai denne fb,google etc hama ekakama danatath
    oka public thiyena algorithm ekakin calculate wenne , first time setup karaddi google,fb etc adala eken dena key eka+ utc time eken code eka gen wenne. oya deka algorithm ekata dunnama code eka enawa

    phone hack unoth mona code da kohomath sms code eka ganna puluwan phone eka hack wela nam
    offline codes 10k aran thiya ganna backup widihata wenama
     
    Last edited:

    sinhawanshaya

    Well-known member
  • Jul 28, 2024
    13,932
    11,368
    113
    ehema thjamai denne fb,google hama ekakama danatath umba kiwwa nisa danuth check kara danuth ehema denne
    phone hack unoth mona code da kohomath sms code eka ganna puluwan phone eka hack wela nam
    offline codes 10k aran thiya ganna backup widihata wenama
    Israel ගාව තියෙනවා සිස්ටම්ස් ඔනෙම ෆොනෙ එකකට ඇතුලු වෙන්න පුලුවන්, එව මාට්ටු වෙලා නිවුස් වල ගියෙ
     

    infernocus

    Well-known member
  • Jul 8, 2025
    3,306
    6,928
    113
    Yes very practical until you get your device lost.
    And what is even the point of using 2FA, if someone can log into your google account and have access to 2FA codes? Lol.
    Big companies like this method because they can cut off the OTP sms cost.
    SMS OTPs are the most reliable 2FA method.
    how can you access to google account without having access to any form of the 2FA in the first place
    This is not a problem of Authenticator apps in general, but problem in google authenticator.
    Anyhow, if you are an Android user, compromised google account means, your SMS are also compromised, and If you want to change your number and if you don't remember all the sites you gave your phone number for OTP, you will ended up in very interesting and reliable situation, specially as a Sri Lankan because all the old numbers get re-cycled in 6 months.

    SMS OTPs are the most reliable 2FA method.
    Wait until you start travel internationally to understand the reliability of SMS
    also SMS is one of the easiest to steal. If you are an Android user, and check how many apps can read your SMS, some apps request (and we grant) SMS read permissions, to just to autofill OTP, but some cases those apps gets access to read any SMS you receive.
     

    wickuma

    Well-known member
  • Jun 8, 2016
    516
    398
    63
    Colombo
    හුත්තො ‌ම‌ෙහෙමයි. මේක තේරෙන්නේ නැත්තං සිංහලෙන් ඉංර්‍ගසියට පරිවර්තනය කරගනින්. මගේ පෝන් එකේ මෙමරිය ඉතුරුකරගන්න මම ෆේසබුක් එක ලැපට දාන් ඉන්නේ. ඊයෙ පෙරේදා වින්‌‌‌ඩෝස් අප්ඩේට් එකක් ගිහින් බිට් ලොකර් එකේ කී එක ඉල්ලනවා ලැප ඔන් කරද්දි. මම මගේ පරණ පෝන් එකට ඔ‌‌තෙන්ටිකේටර් එක හදලා තිබුනේ. ගිය මාසේ මම මගේ පෝන් එක මාරුකලා. අලුත් එකට තාම හැදුවේ නෑ. අළුත් එකට ගියාට දැන් Microsoft එකෙන් පරණ ගිණුම් ආපහු දෙන්නේ නෑ. දැන් කොහොම හරි ‌ෆ‌ේස් බුක් එකට අයි ඩී එක යවලා උන් අළුත් පාස්වර්ඩ් එකක් එවලා මම ෆ‌ේස් බුක් එක හදාගත්තා. හැබැයි තාම පරණ Microsoft Authenticator Code ගන්න බෑ.
    ඒ කියන්නේ දැන් Microsoft Authenticator එක අලුතෙන් install කරාම ඒකෙ තිබ්බ පරණ අකවුන්ට්ස් / කෝඩ්ස් restore වෙන්නේ නැද්ද ?