Is there anything I can do, or is that account lost forever now? Resetting the password doesn’t work (natch). Not a huge deal, but it’s upsetting because I was modding a community from that account. Any tips/contacts would be appreciated. Cheers.

*** update: as per commenters suggesting, tried resetting password for that account once again, and I was successfully able to log in, go to my settings, then remove 2FA, and all seems good now

    • nostromorises@lemmy.worldOP
      link
      fedilink
      arrow-up
      5
      ·
      2 years ago

      this worked, wasn’t working last night, but worked just now was able to log in after resetting password, so to settings, and remove 2FA, thanks

    • xantonin@lemmy.world
      link
      fedilink
      arrow-up
      2
      arrow-down
      1
      ·
      2 years ago

      This worked for me. The password reset link will log you in, and you can then disable 2FA and try again.

  • ChipsAHoey@lemmy.world
    link
    fedilink
    arrow-up
    5
    ·
    2 years ago

    FWIW I found the string for 2FA if you right click open link in New window. Then you can read the string to import into an authenticator app from there. Had it generating codes but the codes wouldn’t let me login on my app so I disabled for now. Hope they can fix this in the future.

  • DannyMac@lemmy.world
    link
    fedilink
    arrow-up
    4
    ·
    2 years ago

    I tried to enable it and it didn’t work… Luckily, I’m not locked out and was able to disable it.

  • PsychicPsquirrel@lemmy.world
    link
    fedilink
    arrow-up
    2
    ·
    2 years ago

    Same thing happened to me. The link didn’t appear on mobile. After a password reset on a desktop browser, the 2fa link appeared.

  • towerful@programming.dev
    link
    fedilink
    arrow-up
    2
    ·
    2 years ago

    Always worth - whenever you change authentication settings - opening a new incognito tab and try signing in.
    If it fails, hopefully your actual tab is still authenticated so you can disable/edit

  • Kuro@lemmy.ca
    link
    fedilink
    arrow-up
    1
    ·
    2 years ago

    FYI if this is because of the cross-site attack on Lemmy.world you should know 2FA will NOT help as the attacker accesses the JWT key directly which has already been signed in w/2FA. The only way to mitigate it is to use a native app and not the web or PWA version.

  • Kovu@lemmy.world
    link
    fedilink
    arrow-up
    2
    arrow-down
    1
    ·
    2 years ago

    for some reason, which has to be fixed soon because it’s a huge security risk, you can log back into your account without 2fa after resetting your password via email