Two of the main issues with SMS 2FA, off the top of my head, are that - It adds the carrier to your trusted path - Codes are easy to steal with a $10 IMSI interceptor
This is, of course, ignoring all of the other issues with SMS 2FA (it's not actually 'two-factor' for most people and just more of a TOTP; it's easy to phish.)
I am thinking that the second issue could be mitigated by setting my 2FA number to my Google Voice number. This might help for providers that only support SMS 2FA. Thoughts? Does anyone else do this?
[link] [comments]
SOCIAL SHARE CARD GENERATOR