Google acknowledges that Authenticator authenticator does not enable end-to-end encryption
CTOnews.com April 27 news, Android / iOS version of the Google Authenticator authenticator app recently released version 4.0 update, the introduction of cloud synchronous backup feature. Google responded when Mysk security experts found that the feature did not enable end-to-end encryption.
Security researchers at Mysk report that Google Authenticator keys are synchronized across devices without end-to-end (E2E) encryption. This means that attackers are more likely to sabotage your Google account and launch subsequent attacks.
Google then sent a statement to CNET, which CTOnews.com translated as follows:
End-to-end encryption (E2EE) is a powerful feature that provides additional protection at the expense of users being unable to recover their own data when turned on.
In the future, we will provide E2EE support for Google Authenticator according to the needs of users.
Related readings:
"Google Authenticator authenticator Android / iOS version 4.0 released: supports cloud synchronous backup"