credit karma

    How to bypass Credit Karma's 2FA

    Locked out of your Credit Karma account’s 2FA? No problem! Here’s how I can log into mine:

    1. Log in with my username and password.
    2. Try the 2FA challenge once and let it fail.
    3. Navigate to accounts.creditkarma.com

    Ta-da! I’m in. I reported this a month ago but they haven’t acknowledged it as an issue yet. If I stumbled across this, you can bet the bad guys are already using it.

    Credit Karma stopped accepting my decade-old Google Voice phone number for 2FA. It won’t let me change to use my regular number because we were already using that for my wife’s account (which she asked me to manage for her). Their support’s idea for resolving this? Just ask Verizon for a new temporary phone number each month or so forever.

    Um, no.