Hacker News new | ask | show | jobs
by crdotson 1273 days ago
SMS 2 factor is terrible anyway and is on the way out, although it may still be the only choice for some services for quite a while. A hardware security key is best, and TOTP (Google Authenticator and similar) is very good and both can be used without cell connectivity.
1 comments

In Paypal, for example, this is the screen I reach every time I try to log in.

https://i.imgur.com/V2WbK6C.png

There is no skip button. Even worse, every method I've tried to access customer support requires I be logged into an account.

I do have an Android device at home that may support TOPT, but a lot of websites still recklessly assume you have a mobile number available.