Bitcoin Forum

Economy => Service Discussion => Topic started by: phillipsjk on January 11, 2014, 04:34:15 PM



Title: Facebook app now compromises SMS-based 2 factor authentication
Post by: phillipsjk on January 11, 2014, 04:34:15 PM
The new facebook App asks for a lot of new permissions (https://www.facebook.com/help/210676372433246). Among them is "Read your text messages (SMS or MMS)".

This breaks the SMS-based 2 factor authentication used by many Bitcoin services. This means that if Facebook somehow gets your login passphrase (you do use a different one for each website, don't you?), they can now steal all of your Bitcoin stored in those services.