Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Not actually. Even if you enabled passkey, you still can login to their phone app via SMS. So it is not more secure. People who knows how to do SMS attacks certainly knows how to install a mobile app. And BofA gave their customers a fake assurance.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: