Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Phishing doesn't require stealing the watch. It just requires me to type in a TOTP token on a phishing website. Very different threat model than physical access.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: