Two-factor authentication can be compromisedFirst, a reminder that two-factor and multi-factor authentication are not necessarily made equal. Bad actors may also try to trick you into engaging with fake 2FA prompts. You May Also LikeHow to identify malicious 2FA promptsOne way hackers get past 2FA is by wearing you down with repeated authentication requests, a tactic known as prompt bombing. Hackers may also contact you by phone, text, or email to request your 2FA SMS codes. If you do accidentally interact with malicious prompts, look for signs of a scam, such as sneaky or lookalike characters in web addresses and poor spelling or grammar.