Hacker News new | ask | show | jobs
by jascha_eng 373 days ago
Isn't the whole point of 2fa that if someone gets access to my computer they can't do shit because they'd need my phone too?
1 comments

The “whole point” of 2fa is that even if someone knows your password they cannot login with just credentials.

Compromising or stealing a device is a significant escalation from guessing passwords.

It is also more obvious when your device has been stolen vs just the password.