Hacker News new | ask | show | jobs
by elliottpayne 4304 days ago
2FA is no panacea. My yahoo account (only used for flickr) was compromised with 2FA & 20+ character password.
2 comments

How? Did you have another email account attached as a backup that was compromised?
Google and Yahoo both had 2FA holes in their mobile authentication entry points. No data to back this up other than my own experience and seeing the last logins coming from mobile devices in another country.