Google Authenticator is not iOS 7 compatible, will erase your tokens
code.google.com
code.google.com
iOS 7 is still in beta, and there's still quite a lot of bugs in it (hence... beta). Google maps doesn't work either (it always reports a server connection error for me).
I would assume that these are problems with iOS 7, not the apps in question, since iOS should provide backwards compatibility. These bugs should be reported to Apple (ideally by Google or authors of other specific apps, who can narrow down exactly what's going on) so that Apple can fix whatever bug is causing the incorrect behaviour.
A better title might have been "Current iOS 7 beta is not Google Authenticator compatible"
The advantage here is obvious: it's an app that is a primary business concern for a security-focused company. It's unlikely it'll go out of date as long as Duo is around.
https://blog.duosecurity.com/2012/11/announcing-two-factor-a...
It's sole purpose in life is to run a well-defined, never-changing calculation and display a 6 digit number on the screen. Not changing is absolutely preferred here.
More likely would be e.g. a platform finally getting a halfway decent way to store secrets (which iOS got with the 3GS and even better with iOS 5/6/7), and which Android as a whole still lacks (specific manufacturers are adding it, like Samsung, but it's not a standard due to Google being insane). I don't see a zombie client rapidly adopting those new storage technologies.
The thing I dislike most is when sites don't allow you to link your own OATH credential (i.e. a hardware token); I don't consider any of the cellphone apps or services to be as secure as the hardware token, and there are nice ways to use the hardware tokens for role accounts (locking the physical token in a safe, or leaving it in the custody of a third party without direct access to the account, like a CFO). The ideal implementation of OATH/2FA for a site allows users to specify their own, get the QR code, or get a text code.
Coinbase, for instance, only shows the QR code; I can't either use my own hardware token or back up the character string (which I feel I can do safely) to let me re-generate the token. I generally like having >1 device with my OATH credentials for any given account, particularly if the device is needed to change security settings later. It's awesome that they support 2FA, but doing better would be better.
But why is it deleting the tokens? Can anyone who does iOS development comment?
A while back the Authenticator was not updated automatically but you were asked to switch to a new App [2]. Maybe that happened to you.
[1] https://play.google.com/store/apps/details?id=com.google.and... [2] https://play.google.com/store/apps/details?id=com.google.and...
https://code.google.com/p/google-authenticator/issues/detail...
If that's your idea of a maintained app, I think we have differing ideas of what that means. Users with more totp tokens than will fit on one screen tend to ditch google authenticator because of that issue.
Just reinstall Authy, reauthorize with your Authy account, and you're done! Helped me countless times, from when I had to rebuild my iOS install because of a backup problem to when I got a replacement device due to a hardware issue.
Unfortunately, their marketing is highly convincing. Most people (even most engineers) won't realize the tradeoff here: Authy replaces "two factor authorization" with "two password authorization". It should be clear which is more secure.
The "two factors" with GA are a knowledge factor (something you know - your password) and a possession factor (something you have - your phone number for SMS or phone for GA app).
See also https://en.wikipedia.org/wiki/Multi-factor_authentication
For gmail, Google texts me an auth code; the seed (if there is one) is in their data center. They could switch to seedless down the road since they own both sides of the auth.
Not the best looking app in the world, though!
I had been using it until tonight but after touching the add button, I rebooted my device and found that several tokens were missing. Upon rebooting the App again, they were all gone.