Ban the Use of SMS Communication for Two-Factor Authentication


Ban the Use of SMS Communication for Two-Factor Authentication
The Issue
It's mind-boggling how, in a digital age marked by colossal data breaches and the ever-increasing sophistication of hackers, our private information is still primarily safeguarded by a form of technology born in 1999: the humble SMS (text message). This form of two-factor authentication (2FA) is used by numerous companies worldwide, and it's a protocol as obsolete and penetrable as a cobwebbed chain-link fence.
Our frustration and alarm are not without reason. The convenience of SMS-based 2FA is overshadowed by its alarming vulnerability. Hackers can easily hijack your phone number, gaining unsolicited access to your private information and thus quickly locking you out of your entire digital life – a daunting yet increasingly commonplace reality. Major data breaches ravage organizations every week, only to be quietly swept under the rug until the desolation has become too widespread to contain.
This isn't just about personal discomfort; widely acknowledged studies back this up. NIST, the National Institute of Standards and Technology in the US, has called the security of SMS 2FA into question, advising against its use citing it as weak security practice (source: NIST Special Publication 800-63B).
We've endured enough in an era where privacy is nonexistent and our information is constantly collected and sold, with no regard for security. It's time we discarded any remaining illusion of safety that SMS 2FA affords us. Demand that businesses upgrade our security to reflect technological advancements and the dangers we face in this digital era.
It is the height of common sense to protect our personal data. Stand against outdated, vulnerable security measures - ban the use of SMS (text message) for two-factor authentication. Your signature can provide the impetus for needed change. Sign the petition now.
2
The Issue
It's mind-boggling how, in a digital age marked by colossal data breaches and the ever-increasing sophistication of hackers, our private information is still primarily safeguarded by a form of technology born in 1999: the humble SMS (text message). This form of two-factor authentication (2FA) is used by numerous companies worldwide, and it's a protocol as obsolete and penetrable as a cobwebbed chain-link fence.
Our frustration and alarm are not without reason. The convenience of SMS-based 2FA is overshadowed by its alarming vulnerability. Hackers can easily hijack your phone number, gaining unsolicited access to your private information and thus quickly locking you out of your entire digital life – a daunting yet increasingly commonplace reality. Major data breaches ravage organizations every week, only to be quietly swept under the rug until the desolation has become too widespread to contain.
This isn't just about personal discomfort; widely acknowledged studies back this up. NIST, the National Institute of Standards and Technology in the US, has called the security of SMS 2FA into question, advising against its use citing it as weak security practice (source: NIST Special Publication 800-63B).
We've endured enough in an era where privacy is nonexistent and our information is constantly collected and sold, with no regard for security. It's time we discarded any remaining illusion of safety that SMS 2FA affords us. Demand that businesses upgrade our security to reflect technological advancements and the dangers we face in this digital era.
It is the height of common sense to protect our personal data. Stand against outdated, vulnerable security measures - ban the use of SMS (text message) for two-factor authentication. Your signature can provide the impetus for needed change. Sign the petition now.
2
Share this petition
Petition created on August 29, 2024