I'm talking about TOTP in something like Bitwarden or Authy. You can still social engineer your way to getting a code, but a scammer would have to convince the user to reveal that secret, not just pretend to send a code.
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
replies:
