• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Two-step verification and weak passwords

It's Not Lupus

Senior member
I'm wondering if strong passwords are still necessary for services that have two-step verification, like Google and Steam. What are some disadvantages in using a weak password with two-step verification?
 
Two-Factor authentication should be used as an additional layer of security for your accounts, but it is not a replacement for following best practice in regards to password selection, length, complexity, not re-using passwords, etc.

You should still use a long, hard to guess, and hard to brute-force, password for these accounts. You will be happier you did if the day comes that a vulnerability is found in one of the two-factor implementations you are using.
 
Back
Top