BruceSchneier
New Member
- Joined
- Oct 31, 2015
- Messages
- 423
- Reaction score
- 6
NIST is no longer recommending two-factor authentication systems that use SMS, because of their many insecurities. In the latest draft of its Digital Authentication Guideline, there's the line:
[Out of band verification] using SMS is deprecated, and will no longer be allowed in future releases of this guidance.
Continue reading...
[Out of band verification] using SMS is deprecated, and will no longer be allowed in future releases of this guidance.
Continue reading...