Hacker News new | ask | show | jobs
by prismic 737 days ago
This. I don't think most people realize how much eggs they put into one basket. Every service that can be used for MFA (email, token, password manager) should have its own separate barriers of entry to make total compromise as difficult as possible.