Posted April 15, 2019
low rated
GoG, you have to stop using email for your 2FA implementation. Using email _completely_ undermines the point of two factor. Also, this happened:
https://motherboard.vice.com/en_us/article/ywyz3x/hackers-could-read-your-hotmail-msn-outlook-microsoft-customer-support
Note: "real 2FA" does not use SMS either.
https://motherboard.vice.com/en_us/article/ywyz3x/hackers-could-read-your-hotmail-msn-outlook-microsoft-customer-support
Note: "real 2FA" does not use SMS either.