this post was submitted on 08 May 2026
51 points (96.4% liked)

Mildly Interesting

27588 readers
661 users here now

This is for strictly mildly interesting material. If it's too interesting, it doesn't belong. If it's not interesting, it doesn't belong.

This is obviously an objective criteria, so the mods are always right. Or maybe mildly right? Ahh.. what do we know?

Just post some stuff and don't spam.

founded 3 years ago
MODERATORS
 

I don't know if it fits, but I find it interesting.
First of all, some banks have their own payment methods for online payments, and this is one of them. You may encounter it as alternative to VISA/MasterCard on some e-shops, for example when buying a train ticket at ZSSK.

With an app, you just scan QR code and send the payment.

But, what if I want to do it without an app?

On the left is first major step. Log in with PID + Password + OTP.
And the OTP is when this reader comes into play. Insert card, select code, enter PIN, and re-type the response into the website.

On the right is the second major step, confirming the payment. Ok, you already proved you own the card, so... but anyway.
Select "payment" by repeatedly pressing menu button, enter PIN, amount, recipient account number, and confirm with response.

Probably too annoying if you actually need to use it, but I find it interesting that there's extra hardware for this purpose.

top 11 comments
sorted by: hot top controversial new old
[–] 9point6@lemmy.world 12 points 3 months ago* (last edited 3 months ago) (2 children)

A number of banks here used to use a system like this a couple of decades ago. You'd get a card reader-calculator thing like in the pictures and there was a similar challenge-response flow. I've got no idea if they are even supported any more; I've definitely not seen one in a long time.

I remember "I'll transfer you back when I can get my reader at home" and similar was not uncommon to hear

[–] smeg@feddit.uk 4 points 3 months ago (1 children)

I think most of the uk banks still support them, though they don't send you one by default anymore (you have to request one, which is fair enough as most people don't need them). Also they all seem interchangeable, I used an old one from a different back to authorise a large payment recently.

[–] Natanael@slrpnk.net 1 points 3 months ago

Most Swedish banks have some kind of hardware MFA available but most are standalone one time code generators, only one bank here that I know of use actual battery powered card readers for OTP. Some have card readers with USB connection.

[–] kernelle@lemmy.dbzer0.com 2 points 3 months ago

In Belgium, can confirm they are still widely used. These and eid readers are being replaced by an ID verified app, but I'd say every major bank still has the challenge auth available.

[–] egerlach@lemmy.ca 4 points 3 months ago (2 children)

Tatrapay? Slovakia? (I know I could Google, but I'm curious if my guess is right)

[–] sfxrlz@lemmy.world 3 points 3 months ago (2 children)

Not to be that guy but there is a .sk domain as well.

[–] testaccount789@sh.itjust.works 5 points 3 months ago (1 children)

Could be mistaken for South Korea.

[–] sfxrlz@lemmy.world 1 points 3 months ago

That’s true, the totp generator button descriptions are also a giveaway though. But yeah i did not think of that and had to google for north and south Korea’s tlds :) .kr and .kp were not the first abbreviations that would cross my mind.

[–] hitmyspot@aussie.zone 1 points 3 months ago

Or Slovenia of course, as is tradition.

[–] 56_@slrpnk.net 2 points 3 months ago

That's how I still do it. My phone is too old for the app. It only comes up for larger payments though.