• ramble81@lemmy.zip
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    24 hours ago

    Let me start by saying how stupid that is…. But, if I had to come up with a reason, it may be because Bitwarden can store passkeys which can then make them portable as opposed to device specific which technically is a security bypass.

    • JaddedFauceet@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 hours ago

      I believe they are just indiscriminately checking for the installed source (an information available from Android). If the installed source is not from Google Play Store, it will attempt to block. In this case, app is installed from f-droid.

      this is not just HSBC, a lot of Asian banks implemented this, likely as a reaction to the scam cases.

    • KuroiKaze@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      21 hours ago

      Yeah I would say almost assuredly they have seen scams abusing this enough to have to implement a countermeasure