The idea is to get a dedicated device[0] which uses your bank card to sign the transaction and shows transaction details on its own display. That's probably even harder to infect than iOS.
While German banks support that almost universally, hardly anybody uses it.
Yeah, and then the banks site will just tell the user to approve the "test transaction" on their devices screen. Or that they need to approve it or all of their funds will be frozen, or whatever.
lol. At least on iOS they can trust what they see.
On desktop they can't, https://securityintelligence.com/tatanga-attack-exposes-chip...
All of your security theater falls apart when the device is infected with malware that can make the bank site say anything.
On iOS your banks app/site will never ever lie to you, if it does it'll almost certainly be the banks fault and not the users.