Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

WTF-Beta

  1. Home
  2. Categories
  3. Off Key - General Discussion
  4. 2FA warning

2FA warning

Scheduled Pinned Locked Moved Off Key - General Discussion
9 Posts 4 Posters 83 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • wtgW Offline
    wtgW Offline
    wtg
    wrote on last edited by wtg
    #1

    For the billions logging into Gmail and Outlook accounts daily, as well as other major email platforms including AOL and Yahoo, there’s a dangerous new attack to worry about. If you think 2FA always keeps you safe, think again. This attack “bypasses two-factor authentication through session hijacking and real-time credential interception.”

    Remember, while many phishing lures remain rudimentary, AI is changing this and they will become harder to detect. The advice is clear. Do not click links. Do not use sign-in popups for the platforms you use except through usual login methods. If you need to revalidate, navigate to a sign-in page through usual channels, never through a link unless it’s one you’ve just requested from a usual channel.

    https://www.forbes.com/sites/zakdoffman/2025/02/15/gmail-and-outlook-2fa-codes-hacked-do-not-use-sign-in/

    When the world wearies and society ceases to satisfy, there is always the garden - Minnie Aumônier

    1 Reply Last reply
    👍
    • MikM Offline
      MikM Offline
      Mik
      wrote on last edited by
      #2

      I already do that. Even if it's an email I think I can trust I still go to my normal login.

      “I refuse to answer that question on the grounds that I don't know the answer”
      ― Douglas Adams

      1 Reply Last reply
      • S Offline
        S Offline
        Steve Miller
        wrote on last edited by
        #3

        I don’t click on anything these days.

        1 Reply Last reply
        • M Offline
          M Offline
          Mark
          wrote on last edited by
          #4

          This is the sound of email marketing dying? Without those clicks the metrics they need to justify the expense and hassle are most likely already on the decline. That is due to this type of knowledge becoming more common. Spending just 7 months in cybersecurity training and management, really opened my eyes. This threat has been known about for some time now.

          And yes, correct answer Steve! Don't click anything! Sometimes you have to do it and it's a good idea to copy the link and check it with https://urlscan.io/ or https://www.virustotal.com/gui/home/url

          S wtgW 2 Replies Last reply
          • M Mark

            This is the sound of email marketing dying? Without those clicks the metrics they need to justify the expense and hassle are most likely already on the decline. That is due to this type of knowledge becoming more common. Spending just 7 months in cybersecurity training and management, really opened my eyes. This threat has been known about for some time now.

            And yes, correct answer Steve! Don't click anything! Sometimes you have to do it and it's a good idea to copy the link and check it with https://urlscan.io/ or https://www.virustotal.com/gui/home/url

            S Offline
            S Offline
            Steve Miller
            wrote on last edited by Steve Miller
            #5

            @Mark

            This is the sound of email marketing dying?

            The people rejoiced! 👍

            1 Reply Last reply
            • M Mark

              This is the sound of email marketing dying? Without those clicks the metrics they need to justify the expense and hassle are most likely already on the decline. That is due to this type of knowledge becoming more common. Spending just 7 months in cybersecurity training and management, really opened my eyes. This threat has been known about for some time now.

              And yes, correct answer Steve! Don't click anything! Sometimes you have to do it and it's a good idea to copy the link and check it with https://urlscan.io/ or https://www.virustotal.com/gui/home/url

              wtgW Offline
              wtgW Offline
              wtg
              wrote on last edited by
              #6

              @Mark Can I trust you? Is it safe to click on those links? 🤣

              Seriously, though, thanks for those. Great resource.

              Yea, I'm a member of the "no click" club, too. Have been for a long time.

              I'm starting to get phishing texts. I got the "you have unpaid tolls" one a couple of weeks ago. I read a few days later that there has been a huge uptick in those.

              When the world wearies and society ceases to satisfy, there is always the garden - Minnie Aumônier

              1 Reply Last reply
              • M Offline
                M Offline
                Mark
                wrote on last edited by
                #7

                The irony that I included links in a thread that is screaming "DO NOT CLICK LINKS", was not lost on me.

                1 Reply Last reply
                • wtgW Offline
                  wtgW Offline
                  wtg
                  wrote on last edited by
                  #8

                  @Mark By the way, how is the new job?

                  When the world wearies and society ceases to satisfy, there is always the garden - Minnie Aumônier

                  1 Reply Last reply
                  • M Offline
                    M Offline
                    Mark
                    wrote on last edited by
                    #9

                    The new job is going well. I actually like it as I am working a hybrid schedule with 2 or 3 days at the office and the rest is WFH. Everyone is really cool at the office and we even have an office dog that is there most days. The owner is engaged and is down in the support trenches with his team, as he loves helping people with computer issues and he is also very good at it.

                    While I do well enough in that realm, support was never my main focus, nor do I "love it". 🤣 Software development has always been my primary focus. We are working on a proposal for a customer to replace his very much outdated and unsupported custom software package with one based on the framework that I have built over the past 40 years. If we get this job it will be a job that I will be doing for the next several years.

                    I am working on finding a younger person to train, who wants to take the torch from me sometime in the next 5-10 years. We have a couple of candidates internally but we might hire someone outside of the company for this role.

                    I am also still engaged in my own company. We just release an update to the 9-1-1 centers last week. Yet another update is getting ready to be pushed out next week.

                    1 Reply Last reply
                    Reply
                    • Reply as topic
                    Log in to reply
                    • Oldest to Newest
                    • Newest to Oldest
                    • Most Votes


                    Powered by NodeBB | Contributors
                    • Login

                    • Don't have an account? Register

                    • Login or register to search.
                    • First post
                      Last post
                    0
                    • Categories
                    • Recent
                    • Tags
                    • Popular
                    • Users
                    • Groups