this post was submitted on 09 May 2024
24 points (96.2% liked)

British Columbia

1361 readers
3 users here now

News, highlights and more relating to this great province!

founded 3 years ago
MODERATORS
top 11 comments
sorted by: hot top controversial new old
[–] [email protected] 14 points 6 months ago* (last edited 6 months ago) (1 children)

Seems like if the carrier just gave a new sim card to a scammer without verifying they should be on the hook for the bill?

Seems like a bad ruling, but I need more info than the article provides.

A new sim card should only be obtainable in store with valid ID.

[–] [email protected] 2 points 6 months ago

I think the complex question is how much liability should be taking on for this sort of thing. Theoretically the losses could be massive if a rich person gets scammed... Is the liability unlimited?

[–] [email protected] 8 points 6 months ago (1 children)

Bullshit. The cell provider is the only entity with the ability to transfer a number to a new sim, they are 100% responsible and liable for the transaction.

And since many services only offer 2FA via SMS, there is even more reason that cell providers should smarten the fuck up and put some proper verification measures in place.

[–] [email protected] 1 points 6 months ago

I hope I can use 2fa Authenticator with freedom just in case.

[–] [email protected] 3 points 6 months ago (1 children)

then how about we don't use the sim or text message as 2FA? It sucks that both bank/CRA use text message code as 2FA method.

[–] [email protected] 1 points 6 months ago* (last edited 6 months ago)

CRA has OTP codes now.

I personally use it instead of sms now.

[–] [email protected] 1 points 6 months ago (1 children)

Any ideas of how we can prevent his as consumers?

[–] [email protected] 2 points 6 months ago* (last edited 6 months ago) (1 children)

Don't use sms 2fa if you can avoid it.

If you add OTP 2fa, be sure to remove sms backup.

Literally change banks if they don't provide a non sms way. Some might not do OTP but they do have 2fa via the app.

Buy 2 yubikey (or 3) and protect everything you can with it, but most importantly your email as breaking into your email gets them into too much

Leave negative feedback on apps and services that only allow sms 2fa

[–] [email protected] 0 points 6 months ago (1 children)

Thank you for the advice I just ordered yubikeys. Gotta stay safe out there.

[–] [email protected] 2 points 6 months ago (1 children)

Awesome! I just want to double check, you did get at least 2?

It's important to have a backup one in case you lose one as it's not like an OTP code you get a backup code for.

[–] [email protected] 2 points 6 months ago

Yeah I got more than one. It’s good to have redundancy.