Scary stuff

Soldato
Joined
14 Jul 2004
Posts
4,794
Location
Melbourne , Oz.
Seems I was breached overnight. I have 2FA on via google authenticator app. I get loads of attempts which by looking at this thread is nothing unusual or even worrying however this time they got a bit further. MS flagged it as unusual. I logged in and changed password via a code from the google auth app. I have also signed myself out of all other devices. Checked sent items and no emails have been sent.
Anything further to be worried about?

 
Soldato
Joined
25 Oct 2002
Posts
2,639
Seems I was breached overnight. I have 2FA on via google authenticator app. I get loads of attempts which by looking at this thread is nothing unusual or even worrying however this time they got a bit further. MS flagged it as unusual. I logged in and changed password via a code from the google auth app. I have also signed myself out of all other devices. Checked sent items and no emails have been sent.
Anything further to be worried about?

If you had any app passwords set up for accessing email change them too.

But I think the best thing to do, assuming you're using Outlook.com for your mail, is to disable POP and IMAP support on you account and either use their web based mail or a client that supports modern authentication. POP and IMAP don't have proper support for 2FA so are a weak point on your account.
 
Soldato
Joined
14 Jul 2004
Posts
4,794
Location
Melbourne , Oz.
Thanks for that.

I'm using outlook app on both phone and laptop. Just logged into Live again from desktop and there are several more attempts but where it usually says unsuccessful, incorrect password entered (which doesn't bother me too much) the latest attempts are labelled as unsuccessful syncs. Does that mean they have cracked my new password already? Was a firefox strong suggested one. Or is it an example of 2FA working as planned and I shouldn't worry? I haven't had any 2FA requests by text or email or in the app by MS.
 
Soldato
Joined
25 Oct 2002
Posts
2,639
Thanks for that.

I'm using outlook app on both phone and laptop. Just logged into Live again from desktop and there are several more attempts but where it usually says unsuccessful, incorrect password entered (which doesn't bother me too much) the latest attempts are labelled as unsuccessful syncs. Does that mean they have cracked my new password already? Was a firefox strong suggested one. Or is it an example of 2FA working as planned and I shouldn't worry? I haven't had any 2FA requests by text or email or in the app by MS.
I'm not sure to be honest, but if you're already using the Outlook app then you definitely don't need POP or IMAP enabled which I believe are the source of those sync type attampts.

Log into Outlook.com on a computer then click the gear in the top right to access settings, click Forwarding and IMAP. You might be prompted to sign in again, after you do that then turn off POP and IMAP at the bottom.
 
Back
Top Bottom