Hacker News new | past | comments | ask | show | jobs | submit login

Its not that simple.

Its true that push2factor have some disadvantages, but it has one really strong advantage above pure TOTP: phishing dosnt work as the 2factor is send directly to the site and cant be mitmed at your terminal. Read about it.




What stops phishing? The attacker triggers push request, victim accepts - everything is the same?




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: