October 21, 2018

Here’s a quick overview of two-step verification and how the feature can protect your information:

Why aren’t passwords enough protection?

Before we cover the ins and outs of second-factor authentication (2FA), it’s important that you understand why your password might not be enough to protect you from an ever rising tide of identity theft.

As of your reading this, more than 8.2 million passwords are stolen every single day. This has led to over 16.7 million people in the United States alone having their information stolen. This cost them more than $16.8 billion dollars, more than $1,000 per person.

This has been possible in part because passwords are not the best way to protect your identity. Some people use very simple passwords that are easy to hack, or the same password across multiple accounts, sometimes on websites that have lackluster security.

What is second-factor authentication?

Second-factor authentication, or two-step verification, is an added layer of security that people can use to protect their passwords. It helps websites determine that users are who they say they are when they log in with a password. It requires a person to go through a quick extra step to verify their identity when logging in to an account.

Two-step verification methods typically break down into three categories:

Something only you would know: this method of protection involves asking a user to enter a unique PIN code or answer a security question.

Something you have: this method of protection typically involves someone using a second method of identity verification, typically receiving a code or link through a text message or email, an authenticator app, or using a hardware token like a USB key fob.

Something unique only to you: widely considered the strongest and most advanced method of protection, this method involves your biometric information, which is incredibly difficult to steal. This could include your fingerprints, face, irises, or other ways of identifying you.

