Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

At least encrypt your private key and store it somewhere private, and then store the decryption key in your password manager. Then if either one is compromised you are still safe.


I mean if my password manger is compromised I'm pretty screwed anyway but this is a good idea too.


The whole idea behind 2FA is that if your password manager is compromised, you will still be fine, thats why its so damn important. (also please please please don't use SMS 2FA, it's not secure, it's expensive and there's no reason why I should need mobile phone signal to login to a service.


There's more than just passwords in my password manager.

2FA cannot help you in all cases.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: