Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Printed/saved backup codes are still an option

Vast majority of users don't bother with such complexities.

SMS is the easiest minimum entry barrier to 2FA. It is better than having just passwords.



> It is better than having just passwords.

That is false. Many incidents have been widely reported where huge names, who certainly could afford even a $50 hardware token to protect their reputation/brand, were 'hacked' because they thought SMS 2FA protected them - and it didn't. Even with services which do also offer TOTP or U2F etc.


It is better. It’s just not perfect.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: