Table of Contents
2FA simple bypass
1: Access the Lab.
Website: https://portswigger.net/web-security/authentication/multi-factor/lab-2fa-simple-bypass

2: Go the My account.

3: Log in to the account.
Username: wiener
Password: peter

4: Check the Email client.

5: Find the security code.

6: Log in to the account.

7: Copy the my-account parameters.
Parameters: my-account

8: Log out of the current account.
9: Go to the My account.
10: Log in to the second account.
Username: carlos
Password: montoya

11: How to bypass two-factor authentication?

12: Use the /my-account parameters and bypass the two-factor authentication.
Note: Remove the login2 and paste the /my-account

11: The Lab has been completed.



