Also keep in mind

Google can see the secrets, likely even while they’re stored on their servers. There is no option to add a passphrase to protect the secrets, to make them accessible only by the user.

Basically Google Authenticator cloud sync/backup is not E2E encrypted

https://defcon.social/@mysk/110262313275622023

Have been warned.

Reply to this note

Please Login to reply.

Discussion

Yubi keys ftw