Authy: Difference between revisions
No edit summary |
I switched from Authy around this time. Awful app and company |
||
| Line 19: | Line 19: | ||
==Incidents== | ==Incidents== | ||
===Data breach (July 2024)=== | |||
On July 1, 2024, it was disclosed by Twilio that unauthorized actors accessed customer data "due to an unauthenticated endpoint", but stressed "Authy accounts are not compromised".<ref>{{Cite web|url=https://www.twilio.com/en-us/changelog/Security_Alert_Authy_App_Android_iOS|title=Security Alert: Update to the Authy Android (v25.1.0) and iOS App (v26.1.0) |author=Authy|date=2024-07-01|work=Twilio}}</ref> It would be later discovered the hacker group ShinyHunters breached Authy servers and had access to 33 million phone numbers from Authy.<ref>{{Cite web|url=https://www.securityweek.com/twilio-confirms-data-breach-after-hackers-leak-33m-authy-user-phone-numbers/|title=Twilio Confirms Data Breach After Hackers Leak 33M Authy User Phone Numbers|date=2024-07-04|first=Eduard|last=Kovacs|work=Security Week}}</ref> | |||
===Removing Desktop App (August 2024)=== | ===Removing Desktop App (August 2024)=== | ||
[[File:Authy Desktop App EOL.jpg|150px|thumb|right|Popup message on March 19, 2024]] | |||
On March 19, 2024, Authy would no longer support their desktop app.<ref>{{Cite web|url=https://help.twilio.com/articles/22771146070299-User-guide-End-of-Life-EOL-for-Twilio-Authy-Desktop-app|title=User guide: End of Life (EOL) for Twilio Authy Desktop app Overview|date=2024-01-01|work=Twilio Help}}</ref> Previously, the EOL date was August 19, 2024, however it was moved to March.<ref>{{Cite web|url=https://www.ghacks.net/2024/01/08/authy-authenticator-apps-for-desktop-are-being-discontinued-in-august-2024/|title=Authy authenticator apps for desktop are being discontinued in March 2024|first=Ashwin|last=Karthik|date=2024-01-08|work=ghacks.net}}</ref> | |||
===Inability to export tokens=== | ===Inability to export tokens=== | ||
Authy does not allow the user to export their 2FA tokens to another service.<ref>https://help.twilio.com/articles/19753420684059 | Authy does not allow the user to export their 2FA tokens to another service in order to "maintain security for our users".<ref>{{Cite web|url=https://help.twilio.com/articles/19753420684059|title=Export or Import Tokens in the Authy app Not Supported Objective|work=Twilio Help Center|access-date=2026-03-06|archive-url=https://web.archive.org/web/20260217105416/https://help.twilio.com/articles/19753420684059|archive-date=2026-02-17|url-status=live}}</ref> This makes it harder for users to switch to another 2FA application, in return forces them to delete all their 2FA tokens and manually add set them up again in a new app. | ||
==See also== | ==See also== | ||
| Line 30: | Line 34: | ||
==References== | ==References== | ||
{{reflist}} | {{reflist}} | ||
[[Category:{{PAGENAME}}]] | [[Category:{{PAGENAME}}]] | ||