Microsoft Authenticator Enables Number Matching By Default to Block MFA Fatigue Attacks

Last year, Microsoft released support for number matching in push…

The post Microsoft Authenticator Enables Number Matching By Default to Block MFA Fatigue Attacks appeared first on Petri IT Knowledgebase.

Continue reading Microsoft Authenticator Enables Number Matching By Default to Block MFA Fatigue Attacks

What, if anything, can a person accomplish who has intercepted an emailed QR image for Authenticator?

A web hosting company has emailed me a QR code so I can have Authenticator generate a 6-digit PIN to use as the second factor after I’ve logged into my portal with username and password. What, if anything, could a person accomplish who had… Continue reading What, if anything, can a person accomplish who has intercepted an emailed QR image for Authenticator?

How to ONLY allow TOTP codes for Google two-factor authentication without signing account out of mobile devices [closed]

I want TOTP (in layman’s terms: Google Authenticator codes; I use KeePassXC to access the keys) to be my primary way to verify my logins into my Google account. The problem is that I can only remove the Google prompt sent to my devices if … Continue reading How to ONLY allow TOTP codes for Google two-factor authentication without signing account out of mobile devices [closed]

Beware rogue 2FA apps in App Store and Google Play – don’t get hacked!

Even in Apple’s and Google’s “walled gardens”, there are plenty of 2FA apps that are either dangerously incompetent, or unrepentantly malicious. (Or perhaps both.) Continue reading Beware rogue 2FA apps in App Store and Google Play – don’t get hacked!

How to recover my accounts on Microsoft Authenticator without backup [migrated]

I signed into a new android phone, opened Microsoft Authenticator and signed into my same Microsoft account. I had lost all my accounts and started making new ones. I had some backup codes and some I didn’t have. Please, help me how do I r… Continue reading How to recover my accounts on Microsoft Authenticator without backup [migrated]