4 ms·
In practice the only widespread attack that either TOTP or SMS authentication help with is credential stuffing, and if you use a password manager to use unique
by klempner 3y ago
In practice the only widespread attack that either TOTP or SMS authentication help with is credential stuffing, and if you use a password manager to use unique passwords on each site you're not susceptible to credential stuffing to begin with.
- Symbiote 3y agoBoth provide some protection against phishing sites, where the phisher needs to maintain their access.