API Archives | The Security Ledger with Paul F. Roberts

This Week In Security: Poking Holes In Two Factor Authentication


Listen Later

It was another busy week in the security world. There was big news on the legal front, as The U.S. Supreme Court took steps to protect the data stored on mobile devices from warrantless searches by police. (That’s good news.) But the week also plenty of concerning stories about the security of data stored on mobile phones, tablets and the like. One of the stories that gained a lot of attention was DUO Security’s report on a flaw in PayPal’s two factor authentication feature that could expose the accounts of  security-conscious PayPal users. As The Security Ledger reported, DUO researcher Zach Lanier discovered a flaw in mobile APIs published by PayPal that would allow anyone with a valid PayPal user name and password to sidestep two-factor authentication when accessing PayPal accounts that had that option enabled. After DUO went public with information on the flaw, PayPal disabled two factor authentication […]

The post This Week In Security: Poking Holes In Two Factor Authentication appeared first on The Security Ledger with Paul F. Roberts.

...more
View all episodesView all episodes
Download on the App Store

API Archives | The Security Ledger with Paul F. RobertsBy Paul F. Roberts