• TORFdot0@lemmy.world
    link
    fedilink
    English
    arrow-up
    22
    arrow-down
    1
    ·
    10 months ago

    Better put would be stop using biometrics for single factor authentication. A token can be stolen, or a passcode/push notification can be phished/bypassed as easy as biometrics can.

    • MostlyHarmless@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      12
      arrow-down
      3
      ·
      10 months ago

      Biometrics are two factor, because you need the fingerprint and the device they unlock.

      You can’t use the device without the fingerprint and you can’t take someone’s fingerprint then use them from a different device.

      • TORFdot0@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        10 months ago

        You’re right. By most definitions of MFA biometrics would pass. A biometric is something you are, and the device is something you have. My comment is more for privacy zealous people, who are concerned that they could be compromised by governments without a “something you know” component.