When I go to the main website, I have to click to prove I’m human, I often have to select things like crosswalks, busses, motorcycles, I provide a username and password, as well as a PIN, then after providing a PIN the site again ask’s me to select crosswalks, and busses.. after I’ve already done that. The process to log into the website, the validation, the MFA.. its goofy AF. I mean, User Pass, provide a PIN, at that point why all the Human vs BOT captcha’s. If you have a BOT problem, your infrastructure tech’s need to dial up the Web Application Filter to detect BOT’s. For example a lot of people use Cloudflare, you can use that, especially when traffic isn’t coming from a TOR, or Proxy, if the location is being shared via the HTTPS header and you get good device intelligence and the user is not engaged in suspicious and evasive behaviors. I think you could do better, look at this log-in process, dial in the required protections but give us good people an easier path to the site.
Thank you
Do you have the 2 factor authentication enabled? I only have to type in my text code.
