Hacker News new | ask | show | jobs
by dyingkneepad 1981 days ago
I don't buy the "don't use 2FA" argument.

My partner knows how to unlock my phone. She can read the eventual SMS (I know, it's insecure, but still the only 2FA method in many US bansk), she will receive the email with the eventual password reset on the phone, she can use my authenticator apps. She also knows about my Yubikeys and where they are stored.

She also has access to my laptop, where backups for the above are stored.

2 comments

Even with TOTP, it's trivial to set up the same key on more than one device at the same time.
And what the manual unlock codes?
What manual unlock codes? You mean the TOTP backup? It's documented. But she won't need if she has the rest.