you are viewing a single comment's thread
view the rest of the comments
[–] 10 points 2 years ago

You don’t always have a choice as it is dictated by the service provider, but whenever possible, disable SMS based MFA and enable TOTP or something else. SMS based MFA is susceptible to SS7 MitM attack.

  • source
  • parent