That's a disaster waiting to happen.

Reply to this note

Please Login to reply.

Discussion

yup. not just with ai, but storing all those voice biometrics is one hell of a honeypot. glad i don't bank with them. if i had to, i'd use a voice change app to verify

yup. going to have to start answering the phone and making calls with a voice changer app

Oh, I didn't even think of it from a breach perspective. I haven't come across that anywhere, but since wf is using it, that must mean it's getting or going to become a common method. Ugh

i refuse to use any system i know is vulnerable... that's why i have zero SMS based 2fa anymore and i avoid google authenticator... IT USES SHA1!!! fffs i'm not kidding you go read up on it, what a fucking shitshow

basic opsec

good on you

Can SHA1 be cracked in 30s? Because the key is rotated every 30s.