|
|
|
|
|
by halviti
4112 days ago
|
|
Good old one-factor authentication. The huge problem with this (and I hate even saying this out loud) is stealing phone numbers. If I really wanted to hack your account, I would just port your phone number. I won't give the details how, but let's just say it's not yet a perfect system. The number would get ported elsewhere, your phone company would probably assign you a new number (or your phone stops working until you call them).. the attacker would login, do whatever, and then in the next day or two when you realize your phone has a different phone number.. it would be way too late. You'd likely even have a very difficult time getting your account back, since you no longer have your phone number. Not only that, but now your entire life is messed up slightly because nobody knows your phone number. We haven't seen too much of this yet, but I expect that to change. Thanks yahoo. |
|