Hacker News new | ask | show | jobs
by microtonal 3910 days ago
TOTP is vulnerable to phishing and MITM attacks. U2F (assuming that you are not MITMed when registering the device) is not.