3 ms·
I was the victim of a relatively sophisticated attack that took advantage of the weakness of SMS-based 2FA. The attacker cracked the relatively weak password o
by arglebarnacle 9y ago
I was the victim of a relatively sophisticated attack that took advantage of the weakness of SMS-based 2FA.
The attacker cracked the relatively weak password on my Verizon web login and enabled a "feature" that synced all my SMS to desktop, which they then used to break into a 2FA protected Yahoo email account. I saw the tokens come across and ultimately no financial damage was done, but suffice to say I moved as much of my 2FA over to authenticator apps as I could.