Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Even better, banks in may country are banding together to create identity provider for the web. So basically you will be able to use their super-secure login to online banking based on the state of the art SMS second factor and localhost port probing via the web browser (/s), to identify yourself on the web (up to AML level), sign contracts, or access government services.

https://bankovni-identita.cz/o-projektu/

Security of this project is anyone's guess. They certainly have a lot of flashy websites to lure people in, but actual documentation is behind a signup wall. Each bank will create its own independent IdP infrastructure, so this is gonna be a lot of fun for security researchers to be sure.

After this is done, it seems like I'll already be registered with 6 online IdPs (not all of these are banks) that will be able to identify me enough to allow online communication with the government services.

This proliferation of IdPs is getting quite scary...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: