On 14/09/2022 17:26, Michael Catanzaro wrote:
If you want to protect against *both* threats, use a security key,
but
you've already pushed back against requiring a hardware purchase.
I never click on links from emails, instant messengers, etc.
I'm using fkinit and my simple custom systemd user timer to keep my
Kerberos ticket up to date.
I don't want to buy a smartphone just to do TOTP: no way.
KeePassXC supports TOTP, HOTP and Steam 2FA.
--
Sincerely,
Vitaly Zaitsev (vitaly(a)easycoding.org)