• PorkrollPosadist [he/him, they/them]@hexbear.net
    link
    fedilink
    English
    arrow-up
    36
    ·
    edit-2
    9 months ago

    Any 2FA that sends you an authentication code though SMS is masturbation. That “secret” code is getting broadcasted over the air in cleartext. Time-based OTP is the only reasonable solution.

    • ColeSloth@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      6
      ·
      9 months ago

      If you’re willing enough to intercept my text messenger data and hack my system to know my login credentials and password before doing it, I’ll just let you into my mcdonalds rewards account myself.