this post was submitted on 20 Dec 2024
641 points (98.6% liked)

Technology

60085 readers
2426 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 105 points 5 days ago (28 children)

NIST has been saying since 2016 not to use SMS for MFA. It's always been horribly insecure.

[–] [email protected] 69 points 5 days ago (27 children)

The problem for me is that most Canadian Banks give you the choice of SMS or their shitty adware filled bank app that relies on Google Play Services and wont implement TOTP so I can use a true MFA app. And Im done with being forced to accept user policies I don't agree with to do shit, and most of all done with Google Play Services on my device 😑

[–] OpenPassageways 5 points 5 days ago (2 children)

Even Bank of America doesn't support MFA apps.

[–] [email protected] 2 points 4 days ago

why bank when you can dank

[–] [email protected] 6 points 5 days ago* (last edited 5 days ago) (1 children)

They support USB hardware tokens… but only for the website. Everything else is SMS which kinda defeats the point.

Annoyingly, other than Vanguard, they are the only financial institution to support USB FIDO tokens

[–] [email protected] 1 points 4 days ago (1 children)

in my experience, FIDO tokens suck. I have to around 10 times every time I use one to log in.

[–] [email protected] 1 points 1 day ago (1 children)

Are your USB ports broken? I've never had issues other than physical port problems

[–] [email protected] 1 points 1 day ago

I don't think so. It was on three seperate computers. I also used two FIDO keys, both identical. Maybe they're of poor quality, so it could be that. Any recommendations on a reliable FIDO key?

load more comments (24 replies)
load more comments (24 replies)