I wish we could euthanize this garbage, antiquated phone system. It shouldn't be expected/required that every adult has a phone number when the system is so irredeemably broken and dangerous. If the web didn't have HTTPS, it would be illegal to conduct sensitive business over it. Yet we're stuck with this entrenched telephone system, the best we can do is STIR/SHAKEN, and that's not real security.
>If the web didn't have HTTPS, it would be illegal to conduct sensitive business over it. Source? According to this timeline[1], e-commerence with credit cards predate SSL. Therefore I'm not really convinced that there's some law against it, except for laws that were introduced after SSL was a thing. [1] https://en.wikipedia.org/wiki/E-commerce#Timeline
I really hate this attitude that every little danger has to be regulated.