Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The best defence seems to be to configure your 2FA app to require biometrics. I'm not sure why they didn't mention this option.




Biometrics can't be changed if someone ever figures out how to duplicate them.

think it's a fair point. but it still triggered this in me: "only way to prevent more of my data from being stolen is to give Android more of my data"



Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: