4 ms·
I'm paranoid after enabling 2FA after failing once to save the recovery codes correctly. Not sure what actually happened exactly, but when I managed to get back
by larschdk 3y ago
I'm paranoid after enabling 2FA after failing once to save the recovery codes correctly. Not sure what actually happened exactly, but when I managed to get back in despite odds, the shown recovery codes were _different_ from the ones i had saved locally.
Losing your authenticator and recovery codes means the account is lost permanently. This feels like a bigger threat to my account security than not having 2FA. Not saying it _is_ a bigger threat, but it feels like a bigger threat.
- eddythompson80 3y agoMost websites you can add multiple 2FA options. Get a yubikey (or two) and set it up as a backup. Then just keep your yubikey somewhere safe in your house. I keep it where I keep my passport and other stuff like that.
- paxys 3y agoYou have to simultaneously lose every 2FA device, the recovery codes, and every active session of the service on every computer to get locked out. And even then, there is usually always an account recovery process you can go through. It really isn't all that risky. You know a much easier and way more probable way to lose an account? If the password gets leaked/intercepted and there's no other security check.
- airhangerf15 3y agoLike in a fire? https://shkspr.mobi/blog/2022/06/ive-locked-myself-out-of-my-digital-life/ https://shkspr.mobi/blog/2022/06/ive-locked-myself-out-of-my...