Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
chatmasta
on May 5, 2016
|
parent
|
context
|
favorite
| on:
Introducing TAuth: Why OAuth 2.0 is bad for bankin...
Ok, so in that case the malicious app is able to steal your password... but if login requires two factor auth, the password is useless without also having access to SMS (or whichever 2fa solution) on the associated device.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: