Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Just confirmed with our CTO. He was able to turn MFA off on our root AWS account over the phone.


Huh. I'm going to say thanks to HN, and this comment chain, for bringing this to light. That seems kind of insane.


Maybe it's time for Amazon to decouple AWS accounts from Amazon shopping accounts.


I think you can do that yourself, although it probably means that you need two credit cards.


I mean from a system level perspective. The trouble is that they have policies that are optimized for people shopping on a site with a money back guarantee not for hosting critical infrastructure.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: