Hacker News new | past | comments | ask | show | jobs | submit login

> the "cheap" $20 ones are literally worse than useless.

How so?

> 2FA's future is in touchID (integrated into touch bar on mac) and push to a phone app.

As another person pointed out, this is quite literally what krypt.co's Krypton app does and it integrates with existing U2F/FIDO standards so either a hard or soft device can be used.




I find that quote odd too. I find the $10 USB-only ones useful, I just wish they had dual normal/micro USB like some flash sticks.

I don't want Bluetooth, NFC or software u2f devices for security reasons, but I also think they could each have additional support problems if given to family members.

The ideal option for me would be an applet on a smartcard in my phone's 2nd sim bay and a hard power toggle for the 2nd bay. Then I suppose my phone could also provide proxying of u2f as a USB device.

But last I looked Android was blocking access to simcard slots for general purpose..


Krypt.co looks pretty nice, I have a Yubikey and andOTP but I hate either getting up to fetch the hardware key or fumbling about for the right TOTP code, so the soft-approve by Krypton looks like the most convenient option, and reasonably secure, to boot.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: