Hacker News new | past | comments | ask | show | jobs | submit login

It’s really two step auth. Basically the point is that it defeats password spray attacks.

Higher assurance authenticators need more than TOTP. Usually that means adding a knowledge component (ie pin), challenge/response, a physical token, biometric or all of the above.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: