• Engywuck@lemm.ee
    link
    fedilink
    arrow-up
    13
    ·
    3 days ago

    Why would I want security based on a device? What security this offers greater than a 64 chars password + 2FA?

      • Engywuck@lemm.ee
        link
        fedilink
        arrow-up
        1
        arrow-down
        1
        ·
        2 days ago

        I doubt that anyone that doesn’t use “password” as a password and who knows what 2FA is could be easily subject to phishing.

        • Natanael@infosec.pub
          link
          fedilink
          arrow-up
          3
          ·
          2 days ago

          It literally just takes a slightly different domain name. Lots of infosec pros have been phished when not paying attention