Earlier quoted context omitted.
Wrong. TOTP is supported, although hidden.
https://www.paypal-community.com/t5/Tips-from-Moderators/Pay... It uses Verisign's VIP app instead of Google Authenticator (or Authy or whatever).
Listen to a SIM-Jacking, Account-Stealing Ransom
91–95 of 95 posts
Re: Listen to a SIM-Jacking, Account-Stealing Ransom
#92Earlier quoted context omitted.
Wrong. TOTP is supported, although hidden.
According to some threads I've read it doesn't work in all circumstances. Personally I wouldn't risk it since it could mean risking getting locked out of your account.
Re: Listen to a SIM-Jacking, Account-Stealing Ransom
#93Earlier quoted context omitted.
Could you please elaborate about google thing you mentioned? I am interested in making my ATT sim morr secure..
It replaces the SMS 2FA with a Google prompt app on the phone for Gmail verification. So it doesn't make the SIM more secure but the SIM get hacked it doesn't allow the attacker to gain access to Gmail.
Re: Listen to a SIM-Jacking, Account-Stealing Ransom
#94Earlier quoted context omitted.
For paypal, texting is even the only 2FA option for non-US citizens. Baffling.
You can use a symantec hardware token. Paypal’s ceo is head of symantec’s board. Paypal must use symantec software wherever it is available, and their mfa is no exception. This is still baffling as you say though, because symantecs mfa system does allow for other mechanisms.