Hacker News new | ask | show | jobs
by closeparen 2473 days ago
To prove to you that PSTN based 2FA is never a reasonable idea.
1 comments

What is a reasonable idea when your adversary is the user?

How do you give a person secret knowledge that they need to provide you to authenticate but can’t provide to something else?

TPMs built into managed devices; USB hardware tokens for others.