Ann Arbor's Duo Security shows Google login vulnerability

What do bears and snakepits have to do with your gmail account? They illustrate how the less-than best laid traps often fail. An Ann Arbor software firm shows how hackers get into your account and wreak havoc.
 
Excerpt:
 
"Some months ago, we found a way to (ab)use ASPs to gain full control over Google accounts, completely circumventing Google’s 2-step verification process. We communicated our findings to Google’s security team, and recently heard back from them that they had implemented some changes to mitigate the most serious of the threats we’d uncovered. Here’s what we found:"
 
Read the rest here.
 
Enjoy this story? Sign up for free solutions-based reporting in your inbox each week.