Last week, a lot of tech media sites were breathlessly reporting how the National Institute of Science and Technology in the United States was saying that two-factor authentication (2FA) via SMS messages would be “deprecated” in future standards. Some took this to mean that this technique was insecure, and that users should shy away from this method. Let’s step back and see what the NIST really said:
Post from: Trendlabs Security Intelligence Blog – by Trend Micro
Two-Factor Authentication and SMS Messages: Don’t Let The Perfect Be The Enemy Of The Good