The article says
'hence the best solution to fix this temporaily is to disable 2FA on Google via texts or phone calls, and enable Google Authenticator based 2FA, if you think your telco may be vulnerable.'
I suppose you would also need to remove any 'backup' ohone numbers or the attacker could request a 2F code to them?