• pmk@piefed.ca
      link
      fedilink
      English
      arrow-up
      10
      ·
      10 hours ago

      I agree, and it’s run by private companies who could just shut it down or use it in evil ways. Our government is maybe making a state owned solution, but it will take time.

      • stray@pawb.social
        link
        fedilink
        arrow-up
        6
        ·
        9 hours ago

        If you’re in Sweden you’ll be glad to know Sverige-ID is coming this December.

        • pmk@piefed.ca
          link
          fedilink
          English
          arrow-up
          1
          ·
          3 hours ago

          Aha, didn’t know that, thanks. I hope it will work with free operating systems.

    • stray@pawb.social
      link
      fedilink
      arrow-up
      2
      arrow-down
      2
      ·
      9 hours ago

      2FA is the opposite of a single point of failure though. In order to impersonate you someone has to have access to your authentication device and your master password. There are no passwords to remember or get leaked/stolen, and you still have traditional identification and a physical backup in the form of codes or an authentication device.

      In Sweden it’s like a minute of your time to set up a new phone, or at worst a trip to the bank if you lost your authenticator.

      It also has a screen showing what information or authorization is being requested so that it’s much harder to get scammed.

      • VAK@lemmy.world
        link
        fedilink
        arrow-up
        2
        ·
        6 hours ago

        I think they meant that the single app by all banks can go down through backend crash, buggy/malicious app update, etc.

        • stray@pawb.social
          link
          fedilink
          arrow-up
          1
          ·
          1 hour ago

          I guess, but I’ve gone without BankID for about month previously. (It was my own fault for procrastinating multiple things.) You don’t need it; it’s just very convenient.

          I’m having difficulty envisioning a malicious update. There’s a lot of transparency and regulations.