MrTurnip
Novice
Status: New

There is no excuse in 2025 that proper 2FA is not implemented for account protection. Time and time again, SMS 2FA is insecure, susceptible by social engineering. We've seen the number of security breaches, so our information is already out there.

Request for proper OTP authentication via authenticators, FIDO2/WebAuthn support, security keys.

1 Comment
upstate-SC
Superuser
Superuser

As long as human is involved, they are susceptible to social engineering whether it is TOTP thru authentication apps or text based OTPs.

 

More over not everyone is tech savvy to configure such. I noticed some people crib about text based OTPs for logging into their own account.