Vor Kurzem aufgerufene Suchen


Keine vor kurzem aufgerufene Suchen

Vinicius Henrique da Silva's Avatar

Vinicius Henrique da Silva

Beigetreten 25. Nov. 2022

·

Letzte Aktivität 27. März 2025

Zendesk Luminary

Monitor de Costumer Service na Panasonic do Brasil

Folge ich

0

Follower

2

Gesamtaktivitäten

264

Stimmen

46

Abonnements

85

AKTIVITÄTSÜBERSICHT

Neueste Aktivität von Vinicius Henrique da Silva

Vinicius Henrique da Silva hat einen Kommentar hinterlassen

Community-Kommentar Feedback - Ticketing system (Support)

Thanks

Kommentar anzeigen · Gepostet 07. März 2025 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

Community-Kommentar Feedback - Admin Center

Thanks

Kommentar anzeigen · Gepostet 07. März 2025 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarRegras de negócios

Olá Anton de Young ? alguma resposta

Kommentar anzeigen · Gepostet 20. Feb. 2025 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarFerramentas de visão geral e análise do Zendesk Chat

Ao migrar para as mensagens, como obtenho esse mesmo relátório? 

Kommentar anzeigen · Gepostet 19. Feb. 2025 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarDocumentação sobre o Web Widget (clássico)

até quando o web widget vai funcionar?

Kommentar anzeigen · Gepostet 03. Jan. 2025 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Post erstellt

Post Feedback - Admin Center

Dear Zendesk Team,

I would like to raise a concern regarding the authentication feature in Zendesk that allows users to select "Don't ask again for this computer for 30 days."

While I understand that this functionality is designed to improve user convenience, it introduces significant security risks, particularly in corporate environments where security must be a top priority.

  1. Reduced Effectiveness of Two-Factor Authentication (2FA):
    This option bypasses the second factor of authentication for an extended period, effectively downgrading 2FA to password-only authentication during that time. This significantly undermines the security purpose of 2FA, which is intended to protect against risks such as phishing or credential theft.
  2. Risk from Compromised Devices:
    If a device is shared, stolen, or accessed improperly, attackers can easily bypass the additional protection offered by 2FA. The locally stored token or cookie used to "remember" the device can be exploited if compromised, potentially exposing associated accounts.
  3. Impact on Compliance and Security Policies:
    Organizations adhering to strict data protection regulations or security policies may find it challenging to justify the use of this feature, as it undermines the principles of multi-factor authentication.

Recommendations:

  • Enable administrators to disable this option at the account level, enhancing security for organizations with stringent policies.
  • Reduce the "remember me" period to a more secure timeframe, such as 7 days, or implement periodic reconfirmation of credentials.
  • Provide logging or alerts in the Security Center when users utilize this option, offering greater control and visibility for administrators.

Thank you for your attention to this matter. I would appreciate understanding what measures might be implemented to enhance the security of this feature.

Best regards,

Gepostet 27. Dez. 2024 · Vinicius Henrique da Silva

1

Follower

5

Stimmen

3

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

Community-Kommentar Feedback - Ticketing system (Support)

Dear Zendesk Team,

I would like to raise a concern regarding the authentication feature in Zendesk that allows users to select "Don't ask again for this computer for 30 days."

While I understand that this functionality is designed to improve user convenience, it introduces significant security risks, particularly in corporate environments where security must be a top priority.

  1. Reduced Effectiveness of Two-Factor Authentication (2FA):
    This option bypasses the second factor of authentication for an extended period, effectively downgrading 2FA to password-only authentication during that time. This significantly undermines the security purpose of 2FA, which is intended to protect against risks such as phishing or credential theft.
  2. Risk from Compromised Devices:
    If a device is shared, stolen, or accessed improperly, attackers can easily bypass the additional protection offered by 2FA. The locally stored token or cookie used to "remember" the device can be exploited if compromised, potentially exposing associated accounts.
  3. Impact on Compliance and Security Policies:
    Organizations adhering to strict data protection regulations or security policies may find it challenging to justify the use of this feature, as it undermines the principles of multi-factor authentication.

Recommendations:

  • Enable administrators to disable this option at the account level, enhancing security for organizations with stringent policies.
  • Reduce the "remember me" period to a more secure timeframe, such as 7 days, or implement periodic reconfirmation of credentials.
  • Provide logging or alerts in the Security Center when users utilize this option, offering greater control and visibility for administrators.

Thank you for your attention to this matter. I would appreciate understanding what measures might be implemented to enhance the security of this feature.

Best regards,

Kommentar anzeigen · Gepostet 27. Dez. 2024 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarSegurança global e acesso do usuário

A ideia é boa, mas 1 condição apenas?
como garantir que outros tipos de tickets não sejam excluídos, nao faz sentido.

Exemplo:

Tenho 1 grupo no qual quero excluir tickets dele, entretanto não quero que contenha alguma tag especifica.
Mas somente desse grupo em específico, outros grupos talvez não fosse necessário. Não há como fazer isso.

Meio sem nexo essa opção para uma manutenção correta de tickets e dados.

Kommentar anzeigen · Gepostet 12. Dez. 2024 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarRegras de negócios

Um absurdo isso não estar disponível para todas as contas ou ao menos ter a opção de Add On.

Algo que deveria ser nativo da plataforma.

Kommentar anzeigen · Gepostet 10. Dez. 2024 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare


Vinicius Henrique da Silva hat einen Kommentar hinterlassen

KommentarTicket automation and collaboration

Does this mean that now it is possible to use the ticket file with agent light? in order to maintain communication between departments only?

Kommentar anzeigen · Gepostet 03. Dez. 2024 · Vinicius Henrique da Silva

0

Follower

0

Stimmen

0

Kommentare