zlacker

[parent] [thread] 1 comments
1. jaycro+(OP)[view] [source] 2022-01-27 18:23:17
I was wondering the same thing - here's an article I found that describes both approaches. Not being in the cryptography space myself I can't comment on how accurate it is, but passes my engineering smell test.

https://blog.trezor.io/why-you-should-never-use-google-authe...

Edit - sorry that this is really an ad for the writer's products. On the other hand, there's a hell of a bounty for proving them insecure / untrustworthy, whatever your feelings on "the other crypto".

replies(1): >>tptace+U7
2. tptace+U7[view] [source] 2022-01-27 18:59:28
>>jaycro+(OP)
Yeah these are very dumb arguments against TOTP.
[go to top]