We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
App based bank security
Options
Comments
-
One interesting experiment is to see what happens when you click 'forgotten logon details' on your banking website
I remember Lloyds only wanting details from your debit card and a sms text to reset everything0 -
flaneurs_lobster said:Qyburn said:Our home LTE router can receive SMS messages. I'm experimenting using that as the designated mobile for some savings accounts.
Would the device that you read the SMS messages on also be non-mobile (PC rather than mobile phone)?
Are there not times when the savings provider might need to talk to you on the mobile number? Is that possible on a 4G router?
There's an element of security by obscurity as well.
My router doesn't support voice calls, some modes do by having an analogue phone port.
0 -
I just noticed another weakness in on bank's App. It allows you to view full debit card details, including the security code. That particular bank authorised debit card transactions via the app so we're back to that single factor - break into the phone and you can do anything.
0 -
Qyburn said:I just noticed another weakness in on bank's App. It allows you to view full debit card details, including the security code. That particular bank authorised debit card transactions via the app so we're back to that single factor - break into the phone and you can do anything.
2 -
JohnWinder said:masonic said:It is a little concerning that a few of the banking apps have a passwordless login. Just enter a code sent by SMS and you're in. Many people don't have a lockscreen protected by a strong password, or allow message previews to be shown on the lockscreen. In an ideal world, banking apps would be loaded on a separate device that is physically secured and not taken out and about everywhere the owner goes.
I recently opened a current account which could only be opened by app and in branch but it required you to have a mobile0 -
For what it's worth, any banking apps which could be used to send money to a new payee, I never use FaceID/Biometrics for, I always don't choose that when setting up so I still need to put in a password/passcode I remember. Slightly slower but feels more secure.
Some savings accounts I use Face ID but these can only transfer to the one linked current account and the current account needs a passcode I have to remember. There may be edge cases where someone could try to change linked account but I'd like to think this would have some comeback to the institution if that happened after a phone gets stolen.
Of course if someone comes at gun point and threatens to shoot me if I don't let them into the account, there's not much that can stop that.1
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 350.8K Banking & Borrowing
- 253K Reduce Debt & Boost Income
- 453.4K Spending & Discounts
- 243.7K Work, Benefits & Business
- 598.5K Mortgages, Homes & Bills
- 176.8K Life & Family
- 257K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards