alyth@lemmy.world to Mildly Infuriating@lemmy.worldEnglish · 8 个月前MFAlemmy.worldimagemessage-square90fedilinkarrow-up1926
arrow-up1926imageMFAlemmy.worldalyth@lemmy.world to Mildly Infuriating@lemmy.worldEnglish · 8 个月前message-square90fedilink
minus-squareMSids@lemmy.worldlinkfedilinkEnglisharrow-up4·8 个月前App-based TOTP are not phishing resistant and do not require any level of proximity to the login session. The future is more likely passkeys that use device TPMs.
minus-squareHotzilla@sopuli.xyzlinkfedilinkEnglisharrow-up1·8 个月前Simple challenge number handles that, for example Azure AD MFA forces that today
minus-squareMSids@lemmy.worldlinkfedilinkEnglisharrow-up2·8 个月前Those are better, but are also not phishing resistant.
App-based TOTP are not phishing resistant and do not require any level of proximity to the login session. The future is more likely passkeys that use device TPMs.
Simple challenge number handles that, for example Azure AD MFA forces that today
Those are better, but are also not phishing resistant.