Hacker News new | ask | show | jobs
by theoctopus 2657 days ago
Agreed, this is exactly how 2FA should work. Allowing support staff to deactivate 2FA is a massive security weakness.