To all the people telling me this will never happen, and I should stop trash talking 2FA (TOTP, SMS, etc *not* U2F). Please read this, then kindly apologise. https://twitter.com/josephfcox/status/1075391745502924801 …
-
-
But where we disagree is disparaging services that offer SMS today. The message I advocate for: - add U2F support - make it the default for vulnerable users. - Make it accessible (software keys?). Maybe even ship them keys. - deprecate Sms.
-
Yes, we do disagree on that. Homeopathy is just harmless sugar pills, but I still disparage practitioners, because pretending to be medicine is harmful. In a similar way, pretending to prevent phishing is harmful, even if it's just harmless busy work.
- 2 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
