14
I finally caught my bank's two-factor code in a phishing sim... then read the fine print
I was at a security conference in Austin last Saturday and overheard two SOC analysts arguing about whether SMS 2FA is worse than no 2FA at all. One said the sim swap risk makes it a trap, the other claimed it still stops 90% of script kiddies. That got me thinking about my credit union, which still uses six digit texts. I read their terms later and they basically waive liability if your SIM gets ported. So is SMS better than nothing or a false sense of safety? Weigh in with what you tell your non-tech friends to use.
0 comments
Log in to join the discussion
Log In0 Comments
No comments yet
Be the first to share your thoughts on this discussion.