Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The point I was trying to make is one SMS number does not equal a phone with a paid, credit checked, account behind it. Making it easy to create SMS numbers will help expose the weaknesses of using them for 2fa.

Many people have access to your SMSs. One bad actor at your phone provider, the sms gateway, spoofing your sim, a bad app, or someone casually observing your lock screen are a couple I can think off have, but I'm sure the security experts know many more ways than I do.



Not disagreeing with your overall point, but note that you can configure iOS to hide message contents from lock screen notifications.


iPhone X does this by default and only shows the message contents once Face ID verifies you.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: