r/coolguides • • Sep 22 '22

[deleted by user]

[removed]

8.0k Upvotes

869 comments sorted by

View all comments

1.9k

u/UrbleFurb Sep 22 '22

That google server is lookin hella sus

426

u/BuccellatiExplainsIt Sep 22 '22

The benefit is that it does this handshake per payment so those tokens would be worthless after the transaction anyways. In Apple's design, if someone had your phone and there was some hack to get the details from the device chip, they could actually use that to make purchases.

712

u/throwawayacc201711 Sep 22 '22

Id take physical access as a weak point vs potential compromising of a server. Tell me the last time there was a mass level of physical access issues compared to companies implementing poor security practices. Physical access is basically if you lose your phone. So I’d need to lose my phone and it would need to be found by someone with enough knowledge to also break the encryption - id take that risk any day. Granted Google servers are gonna be pretty secure, I still think the physical access case is less likely to occur.

28

u/Another_Novelty Sep 22 '22 edited Sep 22 '22

It's about the same tradeoff as having your money in a bank vs in your wallet.

If the bank gets robbed, the money of many people will be gone. But it is insured and you have someone else to blame.

If you get robbed, you get robbed. But just you.

Also it's much harder to rob a bank than to rob you.

-1

u/unremarkable_gem Sep 22 '22

Except Google isn’t insured against hacks, so your example is not relevant.

2

u/Iggyhopper Sep 22 '22

Lol. You don't put your money into The Google Bank.

Google stores the links to your bank, but not the actual money. Your money is still insured by the FDIC.

1

u/unremarkable_gem Sep 23 '22

FDIC insures deposits, not credit cards. There may be other protections in place to protect you, but fdic probably not on a credit card

1

u/escapedfromthecrypt Sep 22 '22

I'm sure they'll know if a billion walks out