Your Crypto, Bitcoin are at risk with Google Authenticator

[ad_1]

2-Factor Authentication (2FA) is one of the most important steps Bitcoin and crypto owners can take to protect their exchange and other accounts from hackers. By far the most widely used 2FA method is Google Authenticator; hardly any crypto user is likely to be unfamiliar with the app.

Google Authenticator adds an extra layer of security to exchange accounts by adding a second verification step during login. This means that in addition to entering a password, users must also enter a six-digit code generated by the Google Authenticator app on their phone. .

New Google Authenticator Update Poses Big Risks For Crypto Users

In an announcement posted yesterday, Google released version 4.0 for iOS and Android. The new version introduces synchronization in the cloud.

This means crypto users will be able to sync verification codes generated by Authenticator with all Google accounts and devices, and recover verification codes whenever the device is lost. In other words, one-time codes are stored in the user’s Google account and are no longer device dependent.

This is supposed to make it easier to sign in with Google Authenticator, which was released in 2012. As Google writes, a key feedback from users over the years was that there was too much complexity in dealing with lost or stolen devices that had Google Authenticator installed.

The loss of a device meant that crypto users initially lost their ability to log into any services for which they had configured 2FA with Authenticator. Only a backup code created during app installation could restore all login codes to a new Google Authenticator app running on a new device.

With the 4.0 update, Google is introducing a more simplified solution to this problem: with this update, we are rolling out a solution to this problem, making unique codes more durable by storing them securely in users’ Google Accounts . This change means users are better protected from being locked out and services can rely on users retaining access, increasing both convenience and security.

However, blockchain security firm SlowMist points out in a tweet that this easier manipulation carries a higher risk. If users lose access to their email clients, for example due to a hack, all Google Authenticator-protected access is at risk, says SlowMist:

If you use this backup method, the mailbox will be at risk. Once the mailbox authorization is lost, the 2FA verification code may be stolen, which will lead to huge risks. Please pay attention to the corresponding risks.

Crypto owners should therefore think twice before enabling the new feature or sticking with the old backup solution.

At press time, the crypto market remained in its deep correction. Bitcoin was trading at $27,431.

BTC price, 4 hour chart | Source: BTCUSD on TradingView.com

Featured image from iStock, chart from TradingView.com

Sources

1/ https://Google.com/

2/ https://bitcoinist.com/google-authenticator-update-crypto-bitcoin-risk/amp/

The mention sources can contact us to remove/changing this article

[ad_2]

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Posts