How Google Authenticator gave attackers one company’s keys to the kingdom
Google's app for generating MFA codes syncs to user accounts by default. Who knew?
How Google Authenticator gave attackers one company’s keys to the kingdom
Google's app for generating MFA codes syncs to user accounts by default. Who knew?
I was wondering why the university I'm attending uses a non-Google/non-Microsoft authenticator.
@arstechnica Alternatives?
@arstechnica "Google's app for generating MFA codes syncs to user accounts by default. Who knew?" They did announce this. It was a new feature as of very recently. It was a huge problem before because you had to jump through hoops to transfer 2FA syncs between devices.
Personally though, I do think I like the methods used in software like Aegis better. It can save to a file I can load between devices. Not perfect, but a better balance.
076萌SNS is a social network, courtesy of 076. It runs on GNU social, version 2.0.2-beta0, available under the GNU Affero General Public License.
All 076萌SNS content and data are available under the Creative Commons Attribution 3.0 license.