Hacker News new | ask | show | jobs
by vorpalhex 1264 days ago
Remember that when you create an account and log into a service, you don't know if they even hash your password. They could email all the login attempts with your password in plain text.

A good password manager and 2FA, properly setup, should not increase your risk of lock out. It should decrease it - one set of 2FA elements and one password to remember.