Transcript

A wafrn woot (post) by @tinker@infosec.exchange saying “Microsoft Authenticator needs me to validate with Authenticator in order to log in with Authenticator to use it to authenticate another app with Authenticator. Here is the app telling me to open itself to validate itself with itself. #infosec #iHateComputers” It has a screenshot showing the microsoft authenticator app.

  • Tash@lemmy.world
    link
    fedilink
    English
    arrow-up
    58
    ·
    9 hours ago

    Pretty sure you have another device registered with Authenticator here, and it is asking you to verify against that.

    It would be bad if somebody could just steal your username/password and then register their own MFA, right?

    • DarkSirrush@lemmy.ca
      link
      fedilink
      arrow-up
      4
      ·
      1 hour ago

      So i recently had this happen. I set up Microsoft authenticator on my phone, found out our IT team wants us to use Google authenticator for some reason, hit the disconnect from device button… And got an infinite loop of being redirected to the Microsoft app, and clicking the “cant access” button brought me back to… The Microsoft authenticator app.

      Had to ask IT to delete my 2fa on their end and try again.

    • shalafi@lemmy.world
      link
      fedilink
      English
      arrow-up
      5
      arrow-down
      2
      ·
      4 hours ago

      Keeper does the same. Because that’s sane security.

      Lemmy: $MS dumb and bad! (Please clap.)