Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
0 points
PakG1
8y ago
0 comments
Share
There are no good options until someone figures out a good alternative to passwords.
undefined | Better HN
0 comments
default
newest
oldest
exabrial
8y ago
'U2F + password' is very secure and can't be phished if implemented fully. However, even Google doesn't do U2F correctly :( U2F authentication needs to happen _every_ time a new TLS session is established in order to be 100% phish proof
j
/
k
navigate · click thread line to collapse