Transcript

A wafrn woot (post) by @tinker@infosec.exchange saying “Microsoft Authenticator needs me to validate with Authenticator in order to log in with Authenticator to use it to authenticate another app with Authenticator. Here is the app telling me to open itself to validate itself with itself. #infosec #iHateComputers” It has a screenshot showing the microsoft authenticator app.

    • Baggins [he/him]@lemmy.ca
      link
      fedilink
      English
      arrow-up
      5
      ·
      7 个月前

      This is a legit problem with authenticator. My work phone was wiped and I had to have my authenticator reset because it got stuck in the same loop.

      • Hotzilla@sopuli.xyz
        link
        fedilink
        arrow-up
        2
        arrow-down
        1
        ·
        7 个月前

        Well, if the MFA device is not available, reset is the only way. If user would be able to bypass the lost device, the whole thing would be vulnerable.

        Whole MFA is of course really f stupid, but it is best we got against phishing.