alyth@lemmy.world to Mildly Infuriating@lemmy.worldEnglish · 9 months agoMFAlemmy.worldimagemessage-square139fedilinkarrow-up1955arrow-down138
arrow-up1917arrow-down1imageMFAlemmy.worldalyth@lemmy.world to Mildly Infuriating@lemmy.worldEnglish · 9 months agomessage-square139fedilink
minus-squarecooopsspace@infosec.publinkfedilinkEnglisharrow-up3·edit-29 months agoSMS: Here is your 30s “MFA” code, I’ll send it to you 40 minutes after you need it. SMS isn’t 2FA. Its 1.5FA.
minus-squareKairuByte@lemmy.dbzer0.comlinkfedilinkEnglisharrow-up2·9 months agoSMS isn’t even secure. Mitm, social engineering, straight up theft, and more are all ways around it. It should never have been implemented, but especially not when totp exists.
SMS: Here is your 30s “MFA” code, I’ll send it to you 40 minutes after you need it.
SMS isn’t 2FA. Its 1.5FA.
SMS isn’t even secure. Mitm, social engineering, straight up theft, and more are all ways around it. It should never have been implemented, but especially not when totp exists.