Hacker News new | ask | show | jobs
by hobarrera 3447 days ago
Probably not; the fake page can also prompt for the second factor and then quickly do the real authentication using that.
1 comments

This is why having a warning for non-HTTPs sites is so important: http://boingboing.net/2016/11/05/chrome-is-about-to-start-wa....
Yup, hopefully that would make a difference, though if we keep getting news like today's GoDaddy validation bug, this'll gradually lose value. :(
I don't see how that would help here. Couldn't the phishing site have HTTPS?