Toot

Written by Merospit on 2025-01-18 at 20:07

Is it just me, or did SMS OTP sent by customer support for privacy reasons break the security model for SMS OTP 2FA authentication for logins?

Now every customer is used to reading OTP codes over the phone just to get help with their account, so they don't think twice about where the 2FA codes should be used.

[#]privacy #cybersecurity

=> More informations about this toot | View the thread | More toots from merospit@infosec.exchange

Mentions

Tags

=> View privacy tag | View cybersecurity tag

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/113851162013567378
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
223.045473 milliseconds
Gemini-to-HTML Time
0.382312 milliseconds

This content has been proxied by September (ba2dc).