• Blackmist@feddit.uk
    link
    fedilink
    English
    arrow-up
    6
    ·
    9 days ago

    I’ve long been of the opinion that passwords on their own aren’t fit for purpose.

    2FA has to be the way, surely? Most people are going to be a lot more careful with their phone than with a post-it note.

    • lightnsfw@reddthat.com
      link
      fedilink
      arrow-up
      6
      ·
      9 days ago

      2FA generally still requires a password though… It’s just adding a second thing for OPs manager to bitch about.

      • Blackmist@feddit.uk
        link
        fedilink
        English
        arrow-up
        4
        ·
        9 days ago

        It does, but it’s still better than knowing your customer database is just “qwerty123!” away from being accessed by anybody who guesses it, or gets it from a basic phishing email.