Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The odd thing about SMS 2FA is the amount of critical services that rely on it as the only method of extra protection.

You want your: bank, utility provider, entity-that-has-lots-of-personal-data-on-you to offer other secure options.

This might be a costing issue though. When your customers number in the millions, your call center is probably handling thousands of "im locked out" issues per day and these need to be handled in x-minutes. Other security options might cause the time meant to handle these scenarios to increase and SMS is generally 'simple' compared to them.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: