@anderseknert I read a thread about this (we didn't fall for it and give them the login info so this is second-hand info) but they said if MFA is enabled they actually tell you to pass the confirmation code on to them so they can use it, which every decent security guide will tell you is a red flag meaning you're 100% getting scammed and stop immediately
can't confirm this myself, but that's what I've heard; I hope they get sued into a smoldering crater for this behavior