Glossary
Two-factor authentication (2FA)
Requiring a second proof of identity beyond a password.
In more detail
SMS-based two-factor is the weakest common form, because a SIM swap defeats it. An authenticator app or a hardware key is materially stronger, because neither depends on your phone number.
Why it matters to you
If your published personal data enables a SIM swap, SMS two-factor becomes a liability rather than a protection.
What to do
Move your email, banking and any financial accounts off SMS two-factor today.
Related terms
- SIM swap
An attacker persuades your mobile carrier to move your phone number to their device.
- Pretexting
Impersonating someone credible to extract information or access.