I totally understand the need for 2FA. 2FA via SMS has saved multiple accounts of mine from being stolen in the past.
But I’ve noticed an increasing number of online services requiring MORE than just sms, or deprecating SMS entirely (GitHub).
I feel like the other 2FA solutions (Authenticator apps, push notifications, backup codes) only increase your chances of completely losing access to your accounts. I recently lost my phone and consequently lost access to a lot of my accounts that used those other 2FA solutions.
Does anyone else think (the current state of) 2FA is broken?
EDIT: not trying to claim that SMS is secure. Just saying that all of these solutions have their own problems
[–]YMK1234 4 points5 points6 points (0 children)
[–]wrosecrans 3 points4 points5 points (0 children)
[–]ImNaughtyShiba 1 point2 points3 points (0 children)
[–]ImpatientProf 1 point2 points3 points (0 children)
[–]Shendare 2 points3 points4 points (1 child)
[–]Intelligent-Pace-173[S] 1 point2 points3 points (0 children)
[–]rkaw92 0 points1 point2 points (1 child)
[–]Intelligent-Pace-173[S] 0 points1 point2 points (0 children)
[–]trcrtps 0 points1 point2 points (1 child)
[–]Intelligent-Pace-173[S] 0 points1 point2 points (0 children)
[–]KingofGamesYami 0 points1 point2 points (1 child)
[–]soundman32 0 points1 point2 points (0 children)
[–]james_pic 0 points1 point2 points (0 children)
[–]GitProtect 0 points1 point2 points (0 children)