Database leak exposes millions of two-factor codes and reset links sent by SMS

Enlarge / 2FA via SMS happens worldwide, all. (credit: Raimond Spekking) Millions of SMS text messages—many containing one-time passcodes, password reset links, and plaintext passwords—were exposed in an Internet-accessible database that could be read or monitored by anyone who knew where to look, TechCrunch has reported. The discovery comes after years of rebukes from security […]

Reddit Got Hacked Thanks to a Woefully Insecure Two-Factor Setup

The tech community has known about the risk of using SMS in two-factor authentication for years. Reddit appears to have missed the memo. https://media.wired.com/photos/5b620c800a4a950b900cf5c3/master/pass/Reddit%20User%20Data%20Breached%20Because%20of%20Woefully%20Insecure%20Two-Factor%20Setup.jpg

How to Secure Your Accounts With Better Two-Factor Authentication

Two-factor authentication is a must, but don’t settle for the SMS version. Use a more secure authenticator app instead. HOPEFULLY BY NOW you’ve heeded the repeated warnings from your friends and loved ones (and friendly, beloved internet writers) to use two-factor authentication to secure your digital accounts. That’s where access to Facebook or Twitter or your online bank—anything that supports it, […]

Facebook: Two-factor authentication spam was caused by a bug

A number of people have been receiving random notifications from Facebook after giving the social network their phone number for two-factor authentication. Worse, if they attempt to cancel that by replying to the message, say with STOP or CANCEL, Facebook would post their replies as a status update for all to see. Now, the social […]

Bank of America is adding two-factor fingerprint authentication

In the wake of recent security breaches, including but certainly not limited to Equifax, Bank of America has stated it will integrate fingerprint-based two-factor authentication into its online banking setup. The financial institution will start using Intel’s Online Connect system to ensure customer security at some point in 2018. Online Connect harnesses security features built […]

A guide to common types of two-factor authentication

Two-factor authentication (or 2FA) is one of the biggest-bang-for-your-buck ways to improve the security of your online accounts. Luckily, it’s becoming much more common across the web. With often just a few clicks in a given account’s settings, 2FA adds an extra layer of security to your online accounts on top of your password. In […]

Google will nudge SMS two-factor users to try its way instead

Google rolled out a new look and feel for two-factor authentication earlier this year, and soon it will encourage people still using the text message-based system to try it out. Google Prompt pops up a notification on authorized mobile devices with information about a login attempt, including what device it’s coming from. It’s easier to […]

Nest adds two-factor authentication to protect your data

Nest has finally launched two-factor authentication to prevent hackers from accessing your camera feeds or any other personal info. You can activate the feature under Account Security in the Nest app. If you do, you’ll start getting a verification code through text every time you log into your account. Just take note that you’ll get […]