nanog mailing list archives

Re: Malicious SS7 activity and why SMS should never by used for 2FA


From: "John Levine" <johnl () iecc com>
Date: 19 Apr 2021 14:11:18 -0400

It appears that William Herrin <bill () herrin us> said:
If a key fob can be sent to them - preferably for free - that would help.

Hint: carrying around a separate hardware fob for each important
Internet-based service is a non-starter. Users might do it for their
one or two most important services but yours isn't one of them.

You think?

https://obvious.services.net/2013/07/better-have-big-pockets-if-you-want.html

R's,
John


Current thread: