Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's because it's way easier to install malware on PC than mobile. None of us are immune either. In recent times there has been malware distributed by common NPM packages as well as game mods. Every NPM package you install has the ability to steal your browser session tokens and the only thing stopping the attacker from actually logging in and spending your money is the fact it has to be confirmed on your phone.


Choosing between a risk of that and preinstalled non-removable malware in every phone? Tough one, I know.


That doesn't require a bank approved app - we already have authentication mechanisms that are standardized.

People do proprietary bullshit because they want to do proprietary bullshit. Anything else is made up.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: