How Apple and Amazon Security Flaws Led to My Epic Hacking (2012)
wired.com
wired.com
But in this case, the URLs are actually different, though they redirect to the same canonical version.
http://www.wired.com/2012/08/apple-amazon-mat-honan-hacking/... http://www.wired.com/gadgetlab/2012/08/apple-amazon-mat-hona...
I would advise against that...
The big issue for me though is Twitter. It does not support 2FA with FreeOTP (or the proprietary Google Authenticator). I don't want to install the Twitter App or hand over my phone number for privacy reasons.
I also do not get the option to enable 2FA with Apple when I log into the Apple ID site and go to the menu they instructed me to in the FAQ. The whole section they're talking about is just not there.
They're both failing if you ask me. And that also counts for the celebrity leaks; I blame the hacker first, and providers second. Especially with Apple, who push you to give them so much of your data, and then doesn't take the security of its customers seriously.
Heck, it doesn't matter that Google Authenticator is proprietary. The protocol it uses is open, and there are open-source apps implementing it. There really is no excuse.
Backup, backup and again back-up!