Hacker News new | ask | show | jobs
by jackewiehose 1480 days ago
I don't understand the point of having 2FA with your password manager. When I open my password manager on a malware infected PC it doesn't matter how the password vault is opened. Once it's opened it is available in RAM and the malware is able to read it completely anyway.

My passwords are stored in Keepass on an encrypted backup disc, locally and also in another household. There is no way I would make the accessibility to something important like that dependent on additional hardware.

1 comments

I see a few use cases depending on the password manager. For local, it probably doesn't add too much.

For cloud-based solutions, it mitigates the risk of having your master password snooped when typing it in public.