Hackers Beat Two-Factor Authentication, Breaking Into Gmail Accounts And More
Dhir Acharya - Dec 22, 2018
Using phishing attacks, hackers can break two-factor authentication and steal your mail accounts.
- You Can Now Edit Microsoft Office Files Right In Gmail
- has:attachment larger:10m, How To Check Google Storage Status
- Software Engineer Hacking Former Company, Hoping To Be Rehired
It seems like no matter what kind of protection companies implement, hackers find their way to sneak in. Or to speak it in another way, companies have continually failed to protect their users from hackers. Among the latest attempts to prevent hackers from stealing user accounts, 2FA, aka two-factor authentication, has been implemented. This method requires users to register their phone numbers so that when they log in their accounts, after providing the passwords, users will receive an authentication code on their phone which they have to type in.

The 2FA used double checks to make sure you are the actual owner of the account that can access his or her phone all the time. People consider this as one of the most reliable ways to protect account since even when hackers have got your password, they still can’t get in your account without your phone.
However, what if hackers come up with a way to even beat that two-factor authentication method? We’re not asking this question just in case, we ask because it did happen. And hackers surpassed 2FA by phishing attacks.
As stated by NSA, it’s not strange that hackers can beat 2FA, what’s new here is how they do it. Accordingly, hackers firstly obtain your username and password with phishing, then they make the request for two-factor authentication on behalf of you and ask you to provide the authentication code to break into your account.

The report from NSA also said that has made this process automatic, creating a fake login page used for email services like ProtonMail, Yahoo Mail, Gmail, etc. This means hackers can hack into your mail accounts without even touching the computer or lifting their hands at all. Apparently, two-factor authentication does not look so protective when it comes to high-level hackers.
According to the report, this hacking method has affected over a thousand Yahoo and Google accounts. In some attacks, user are even asked to enter their mobile numbers for confirmation before requesting 2FA key. Also, the phishing tool creates separate passwords that allow third-party applications to access to the account.
Hackers have also used services like ShuttleCloud to create clones of Yahoo accounts with different Gmail IDs.
NSA advised users to use hardware-based security keys to avoid phishing attacks.
Featured Stories
Features - Mar 24, 2026
How to Use GeForce NOW to Play Video Games Without Actual Hardware
Features - Jan 29, 2026
Permanently Deleting Your Instagram Account: A Complete Step-by-Step Tutorial
Features - Jul 01, 2025
What Are The Fastest Passenger Vehicles Ever Created?
Features - Jun 25, 2025
Japan Hydrogen Breakthrough: Scientists Crack the Clean Energy Code with...
ICT News - Jun 25, 2025
AI Intimidation Tactics: CEOs Turn Flawed Technology Into Employee Fear Machine
Review - Jun 25, 2025
Windows 11 Problems: Is Microsoft's "Best" OS Actually Getting Worse?
Features - Jun 22, 2025
Telegram Founder Pavel Durov Plans to Split $14 Billion Fortune Among 106 Children
ICT News - Jun 22, 2025
Neuralink Telepathy Chip Enables Quadriplegic Rob Greiner to Control Games with...
Features - Jun 21, 2025
This Over $100 Bottle Has Nothing But Fresh Air Inside
Features - Jun 18, 2025
Best Mobile VPN Apps for Gaming 2025: Complete Guide
Read more
Features- Mar 24, 2026
How to Use GeForce NOW to Play Video Games Without Actual Hardware
GeForce NOW makes PC gaming accessible to a wider audience by removing the barrier of expensive hardware.
ICT News- Mar 24, 2026
OpenAI on the Brink: Major Setbacks Signal the Bursting of the AI Bubble
The era of unchecked AI hype appears to be ending, and the bubble is finally bursting.
Comments
Sort by Newest | Popular