Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The SMS stuff seems like theatre when SS7[1] has been known to need a nuclear-powered auto bailer for how porous it is.

[1] https://en.wikipedia.org/wiki/Signalling_System_No._7



... which is why none of the banks I've used support it for many years now. It's a legacy example. Modern banks all rely on apps that bind to the secure element in the phone or they issue a smartcard reader.


Not all modern banks, e.g. Santander Bank in Poland still uses one-time SMS codes.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: