logoalt Hacker News

miki123211yesterday at 11:23 AM1 replyview on HN

> i wonder what caused the change

In many countries, if the consumer gets defrauded, the bank foots the bill.

I don't think the problem here is consumers getting defrauded by having an insecure rooted device. It's fraudsters using the mobile app APIs for nefarious purposes, and the best way to prevent that is to use SafetyNet and other similar mechanisms.


Replies

TeMPOraLtoday at 1:16 AM

> and the best way to prevent that is to use SafetyNet and other similar mechanisms.

It's not the best way to prevent it. It's the easiest way for the bank to avoid liability.

The ugly truth of cybersecurity is that, in the real world, most of it is an exercise in shifting liability around and diffusing it. Making systems actually secure is not necessary.