Hacker News new | ask | show | jobs
by wackycat 874 days ago
I wonder if this was SIM-swapping and if so if it will finally get a bit more federal attention
1 comments

The problem really isn’t SIM swapping, it’s that we’ve become used to treating phone numbers as reliable personal identifiers, and SMS OTP as proof of identity (for authentication) and/or humanity (for spam/sockpuppet account protection).

Mandating 2FA methods other than SMS OTP would be amazing, but I don’t see that happening at the federal level, largely due to the complete lack of other digital authentication methods. What else should companies use?

the same thing hacker news uses; a user name and a password.

if we want proof that each account correlates to exactly one person, well i think that should 100% not be a phone number and is an entierly bigger+different problem

I fully agree, but practically, this is what many companies are doing right now.
lol after what we've just seen, when one company jumps off a bridge and lays off a ton of folks, other companies copy that same move...