Skip Navigation

I'm this close to visiting my "local" branch for all my banking.

I'm lucky my banking app works (GrapheneOS), as it's now requiring 2FA with the app anytime I login on the browser. Can't use an actually secure form like TOTP. At least they now allow passwords over 8 characters (yes, serious).

(Meme in comments)

125 comments
  • I didn't try a rooted phone, but thankfully my banking app did work on my phone with custom ROM without SafetyNet.

    But they do block some VPNs. I know it temporarily didn't work with ProtonVPN, though now it does again. They only told me that they allow VPNs which they consider secure, but for security purposes they won't reveal how those considerations are done.
    How would that make it insecure, if they aren't just using pre-made IP blocklists?
    Anyway, that was a painful experience.
    Getting it to work after being to connected to VPN required de-activation and re-activation of the app. That's a fairly painful process since it uses OTP tokens generated by a card reader:

    It does have a digital version, but that's less secure.

  • This post is against Rule 6, but I'll leave it up this time since there are a decent amount of discussion here now.

    lseif@sopuli.xyz, please remove the image when you can. You can post it in the comments.

  • This is actually something I have spent a lot of time thinking about. In Sweden, where my boyfriend lives, their BankID app is ubiquitous, and there is very little cash handling going on, additionally the fees for actually going to the bank or subsidiary to pay your bills are exorbitant.

    Everybody pays their bills online using "BankID", which is kinda nifty and works well enough if a single point of failure is your thingaling, but what if people simply choose not to get a phone, or don't want a computer, just basic like that, what if?

    It feels kind of creepy to me, I don't know...

  • I use Magisk with the DenyList enabled and I just add banking and government apps to that list. Everything works perfectly.

125 comments