Hacker News new | ask | show | jobs
by ksdnjweusdnkl21 285 days ago
TOTP isnt designed to be against phishing. Its against weak, leaked or cracked passwords.
1 comments

Lots of junk TOTP apps in app stores.

Once heard of a user putting in a helpdesk ticket asking why they had to pay for the TOTP app. Then I realize their TOTP seed is probably out in the open now.

I’m sure we can imagine how else this could go badly…