Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.
Please note this sub-forum does not provide professional finance advice. You should seek advice from a licensed financial advisor.

To post in this sub-forum you must have made 100 posts or have Trust status or have completed our ID Verification.

If investing please consider our affiliate link for new accounts: Sharesies.



philthynz

8 posts

Wannabe Geek

ID Verified

#298934 28-Jul-2022 15:59
Send private message

Is there a bank is NZ that has MFA/2FA via OTP (not Sms or email) on their Android apps and website login? And on all payments?

Westpac don't have this or android pay, so I'm considering to switch.

Also, which bank is considered to have the best security?

Filter this topic showing only the reply marked as answer Create new topic
Linux
12174 posts

Uber Geek
+1 received by user: 8469

Trusted
Lifetime subscriber

  #2947470 28-Jul-2022 16:03
Send private message

bnz for sure



dfnt
1553 posts

Uber Geek
+1 received by user: 1036

Trusted
Lifetime subscriber

  #2947475 28-Jul-2022 16:19
Send private message

Few years back I really enjoyed using the BNZ app, especially with their push notification MFA via the app when logging into inet banking elsewhere

 

ANZ is still in the dark ages with SMS 2fa..


Stu1
1892 posts

Uber Geek
+1 received by user: 489

ID Verified
Subscriber

  #2947476 28-Jul-2022 16:19
Send private message

Rabobank with digipass




PolicyGuy
1820 posts

Uber Geek
+1 received by user: 1769

ID Verified
Lifetime subscriber

  #2947499 28-Jul-2022 17:07
Send private message

Stu1:

 

Rabobank with digipass

 

 

+1

 

From the security point of view, this is undoubtedly the best solution.
I don't know of any other NZ bank that offers this level of sophistication

 

The next best would be authentication through Authy or some equivalent, but I've never come across this with the banks I have dealt with.


davidcole
6099 posts

Uber Geek
+1 received by user: 1465

Trusted

  #2947533 28-Jul-2022 18:58
Send private message

Asb does authentication of browser by asking your phone app to verify you (like gmail).

But nothing I think on the app itself. Maybe on set up, it might ping another device? I’ve not set up a new deceive for a while.

But it’s a pretty basic app other than that.




Previously known as psycik

Home Assistant: Gigabyte AMD A8 Brix, Home Assistant with Aeotech ZWave Controller, Raspberry PI, Wemos D1 Mini, Zwave, Shelly Humidity and Temperature sensors
Media:Chromecast v2, ATV4 4k, ATV4, HDHomeRun Dual
Server
Host Plex Server 3x3TB, 4x4TB using MergerFS, Samsung 850 evo 512 GB SSD, Proxmox Server with 1xW10, 2xUbuntu 22.04 LTS, Backblaze Backups, usenetprime.com fastmail.com Sharesies Trakt.TV Sharesight 


freitasm
BDFL - Memuneh
80647 posts

Uber Geek
+1 received by user: 41030

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2947586 28-Jul-2022 22:01
Send private message

BNZ app requires you to enter the 2FA codes from the Netguard card. Once this is done it relies on phone security (in my case fingerprint). When paying to new accounts on your browser, the app will push a notification to approve/reject the request.

 

I think the BNZ solution is pretty good.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


HP

 
 
 
 

Shop now for HP laptops and other devices (affiliate link).
michaelmurfy
meow
13579 posts

Uber Geek
+1 received by user: 10910

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2947678 29-Jul-2022 07:08
Send private message

So security is one thing the bank will actually cover you for as long as you’re not stupid. With ANZ, as long as you have a secure password, don’t share access and have OnlineCode setup they’ll cover you for any security shortfalls (such as SMS based 2FA which isn’t perfect). Everything else is as secure as anything and they take security seriously, and you’re personally covered by their internet banking guarantee if you’re not stupid (so, don’t use account scrapers at all or hand over your banking login to a third party). I worked on this platform for a number of years and know it very well and personally put my trust in it as I bank there.

BNZ is my other main bank - I like their app, the technology they’ve invested in etc. The security however has only improved rather recently as they only allowed for passwords up to 8 characters long and didn’t care about case but even with this they’ll still cover you for any fraud as long as you’re not stupid.

Personally I’d put my trust in any bank. Pick one that suits you. They’re all “secure” and have sound guarantees that aim to protect you (and them). Just don’t be stupid, don’t use POLi, account2account or Pocketsmith and use whatever security options they offer you. Also ensure you’re not using a compromised password (https://haveibeenpwned.com).




Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


jonathan18
7415 posts

Uber Geek
+1 received by user: 2850

ID Verified
Trusted

  #2947680 29-Jul-2022 08:13
Send private message

PolicyGuy:

 

Stu1:

 

Rabobank with digipass

 

 

+1

 

From the security point of view, this is undoubtedly the best solution.
I don't know of any other NZ bank that offers this level of sophistication

 

The next best would be authentication through Authy or some equivalent, but I've never come across this with the banks I have dealt with.

 

 

I've recently returned to using Rabobank after a number of years, and one of the things I wasn't looking forward to was that damn digipass. Yes, it may offer decent security, but it's a total annoyance to have to hand and to use.

 

Also, it's negated by Rabobank's, to be frank, B-grade mobile app. This offers no additional security over the five-digit PIN that also needs to be entered to complete a transaction. I assume I needed the digipass to originally set up the mobile app (can't recall), but having no additional security measures for authorising transactions (even if only certain conditions are met, eg $$) is weird to me. 

 

Is there a reason that banks (or, at least the three banks I use) don't offer 2FA via Authy or similar?


alasta
6889 posts

Uber Geek
+1 received by user: 3363

Trusted
Subscriber

  #2947690 29-Jul-2022 08:33
Send private message

I also find the Digipass really annoying. I have to ensure that I keep it in my backpack to maximise the probability that I will have it with me if I need to process a transaction when I'm away from home.

 

The advantage of doing 2FA on a phone is that you always have it with you. 


jonathan18
7415 posts

Uber Geek
+1 received by user: 2850

ID Verified
Trusted

  #2947691 29-Jul-2022 08:42
Send private message

alasta:

 

I also find the Digipass really annoying. I have to ensure that I keep it in my backpack to maximise the probability that I will have it with me if I need to process a transaction when I'm away from home.

 

The advantage of doing 2FA on a phone is that you always have it with you. 

 

 

@alasta: are you uncomfortable using/unwilling to use Rabobank's phone app? 

 

While it's a pretty rank app, it does the job and is far better than having to use the digipass.


alasta
6889 posts

Uber Geek
+1 received by user: 3363

Trusted
Subscriber

  #2947744 29-Jul-2022 10:45
Send private message

To be honest I didn't even know they had one! I use the BNZ app and find it good, but as I'm not tech savvy I prefer not to install any apps unless I absolutely need them. Fortunately I only need to interact with my Rabodirect account once every month or two. 


Filter this topic showing only the reply marked as answer Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.