• darcy@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 year ago

    banks have old ahh security. not many support proper 2fa. but if u log in on your phone, and u do have your phone as the 2fa method, it makes no difference having 2fa. if someone gets your phone they get your banking log in and your 2fa method. its like putting totp 2fa on a computer to sign into something on the same computer. different devices for different purposes. remeber banking apps are always proprietry, so any zero day could be active right now, and we would not be the wiser. i suppose banking on a webpage on your phone is better, if you delete the cookie after.

    • KindnessInfinity@lemmy.ml
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      If your phone is secure with screenlock, kept up to date and uses grapheneos than your banking should be safe. Using grapheneOS auto reboot feature would prevent anybody accessing private data stored in RAM , as it’s all at rest after reboot

      • darcy@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        i still dont trust it. theres no real reason to use it on phone. just becoming more dependant

        • KindnessInfinity@lemmy.ml
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          Your first post, you claim that “so any zero day could be active right now” … This can happen with open source software too. Your phone is way more secure than the average PC running debian.