Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

2FA is okay. But the practice of backup code sucks. Instead, save the TOTP hash and make extra sure to back it up. Then you can just reconfigure your 2FA app.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: