Get a Pentest and security assessment of your IT network.

News

Twitter’s two-factor authentication implementation can be abused, researchers say

Twitter introduced two-factor authentication last week to make it harder for attackers to hijack users’ accounts. If enabled, the feature introduces a second authentication factor in the form of secret codes sent via SMS. An attacker who steals someone’s log-in credentials, via phishing or some other method, could associate a prepaid phone number with that person’s account and then turn on the feature. The real owner won’t be able to recover the account by simply performing a password reset. Twitter did not immediately respond to a request for comment.”]

Source: https://www.csoonline.com/article/2133439/twitter-s-two-factor-authentication-implementation-can-be-abused–researchers-say.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2