I’m lucky my banking app works (GrapheneOS), as it’s now requiring 2FA with the app anytime I login on the browser. Can’t use an actually secure form like TOTP. At least they now allow passwords over 8 characters (yes, serious).

(Meme in comments)

  • u/lukmly013 💾 (lemmy.sdf.org)
    link
    English
    1710 months ago

    I didn’t try a rooted phone, but thankfully my banking app did work on my phone with custom ROM without SafetyNet.

    But they do block some VPNs. I know it temporarily didn’t work with ProtonVPN, though now it does again. They only told me that they allow VPNs which they consider secure, but for security purposes they won’t reveal how those considerations are done.
    How would that make it insecure, if they aren’t just using pre-made IP blocklists?
    Anyway, that was a painful experience.
    Getting it to work after being to connected to VPN required de-activation and re-activation of the app. That’s a fairly painful process since it uses OTP tokens generated by a card reader:

    It does have a digital version, but that’s less secure.