Comment on Millions of people imperiled through sign-in links sent by SMS

<- View Parent
irotsoma@piefed.blahaj.zone ⁨3⁩ ⁨days⁩ ago

2FA isn’t the issue. The issue is single factor logins with only text messages, no password and often no username. Those messages allow anyone who intercepts them to login, no username or password is involved at all.

2FA via SMS is a perfectly fine solution, though there are more secure options like yubikeys or TOTP generation apps.

source
Sort:hotnewtop