What does the cybersecurity abbreviation 2FA stand for?

The story behind the answer

The cybersecurity abbreviation 2FA stands for two-factor authentication.

2FA requires two different types of evidence before granting access. These factors usually belong to categories such as something you know, something you have, or something you are. A password is something you know; a phone-generated code or security key is something you have; and a fingerprint is something you are.

The second factor reduces the damage caused by a stolen password. For example, an attacker who obtains a password may still be blocked without the victim’s authentication device. However, not all second factors provide equal protection: app-generated codes and hardware security keys are generally stronger against phishing than codes sent by text message.

2FA is a form of multi-factor authentication, but the terms are not identical in every context. Multi-factor authentication can use two or more factors, while 2FA specifically uses two.

Source: Wikipedia · fact-checked Sept. 2026

Add question to a list

Choose a list to keep this question in: