3 ms·
> thanks for the answers; makes sense! How is it easier to break Teamviewer's 2FA implementation than PayPals?
by hackuser 10y ago
> thanks for the answers; makes sense!
How is it easier to break Teamviewer's 2FA implementation than PayPals?
- colemickens 10y agoYeah, sorry, that was confusing. I don't really agree with the comments saying that the comment was referring to TV's 2FA. I agree with fapjacks/ryanlol's comments. I (think I) now understand why "and my PayPal has 2FA enabled" points to TV being compromised -- If the PayPal account has 2FA active, and they were still "hacked", then it points to an existing session being hijacked. And a probable cause of that would be a compromised TV session. So it's not necessarily an indication that TV's 2FA was compromised, but rather that TV was compromised in general, allowing the hacker to hijack TV sessions. (I'm imagining that the TV 2FA happens on their central server, and not on the actual server daemon running on the target remote machine... so if the central server was compromised...) edit: Obviously this is entirely speculative, I don't know any of what's going down, but it resolves my initial curiosity.