• skankhunt42@lemmy.ca
    link
    fedilink
    arrow-up
    7
    ·
    11 hours ago

    As much as I don’t like LTT, this video is interesting on cell hijacking

    https://m.youtube.com/watch?v=wVyu7NB7W6Y

    I left Tangerine once they started to force SMS 2fa and fought hard to avoid it. Wealthsimple has support for authenticator 2FA which is nice. I looked a year or so ago and I couldn’t find another bank that doesn’t force SMS 2fa

    • ikidd@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      11
      ·
      9 hours ago

      Banks don’t want security, they want plausible deniability. If they say they sent a code to your phone, that’s the end of it for them. They can say it was up to you to secure your phone number then.

    • stealth_cookies@lemmy.ca
      link
      fedilink
      arrow-up
      6
      ·
      edit-2
      7 hours ago

      Its seriously embarrassing how bad our banks are at security. I’ve complained before and got the response “well you are covered if anything happens to your account”, they didn’t seem to understand when my response was “but I don’t want to have to deal with arguing to get my money back”

      Stuff like this is exactly what I was worried about.

      The other thing that banks so that really annoys me is they say “don’t share your password to anyone” and then only give the option of a 3rd party company that you provide your login to in order to link accounts between banks. What happens if one of those businesses gets hacked? Would they reject claims because you gave them your account details?

      • skankhunt42@lemmy.ca
        link
        fedilink
        arrow-up
        1
        ·
        5 hours ago

        Wealth simple wanted my Tangerine password to link the accounts. I didn’t because I was afraid of that exact thing. I’m pretty sure it’s in the fineprint/TOC/Whatever it is that as soon as you provide your password to the 3rd party the bank isn’t liable anymore.

      • nyan@lemmy.cafe
        link
        fedilink
        English
        arrow-up
        1
        ·
        8 hours ago

        What happens if one of those businesses gets hacked?

        As recent history has shown, it isn’t “if”, it’s “when”, alas.

        (This kind of BS is exactly why I do all my banking in person.)

    • Rentlar@lemmy.ca
      link
      fedilink
      arrow-up
      3
      ·
      11 hours ago

      Vancity has OTP 2FA as an alternative, I think they added that sometime last year which I really appreciate.