Billiards
“I don’t need an app — my password is enough.” Why that belief breaks for TOTP and how to choose an authenticator
That opening claim is common, but it is wrong in a useful way: passwords alone are brittle because they depend on a single secret that can be stolen, phished, or guessed. Time-based One-Time Passwords (TOTP) convert that single-secret model into a two-factor process that is meaningfully harder to compromise. This …
