Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Pro: SMS 2FA is better than just passwords.

That's from the point of view of somebody trying a denial of service attack target at some user, right?



Its from the perspective that most users are bad at choosing passwords. We've been trying to get the average user to use distinct high entropy passwords for decades and it hasn't worked.

Imo, if people used passwords correctly, all common 2fa solutions other than yubikeys would be useless.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: