Hacker News new | past | comments | ask | show | jobs | submit login

Why don't you just buy two yubikey and print one-time recovery codes?

If you care about it, then lock it down.

In many ways there is no good way to verify you, if you don't invest in 2FA.

Would you rather be locked out, or have a hacker locked in?




Well, I use 2FA extensively, including for my Google account. However, there are even more vectors possible with 2FA where you lock yourself out of your account (e.g.loose backup codes, phone and access to phone number) which a human could easily solve (verify scan of ID, address proof, phone call, confirm that no activity for X days on the account in question).




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: