Came across something interesting during a security test. If you have
Fortiautenticator windows agent on a machine like RDP, you can hit the
back button, then other user and log in without any OTP essentially
bypassing the entire OTP system. You can ...