Two-Factor Authentication

Set up 2FA to add an extra layer of security to your ReconX account.

RX
ReconX Team··2 min read

Why Enable Two-Factor Authentication?

Two-factor authentication (2FA) adds a critical layer of security to your ReconX account. Even if someone obtains your password, they can't access your account without the second factor from your authenticator app.

Given that ReconX provides access to sensitive breach data, we strongly recommend enabling 2FA for all accounts.

Setting Up 2FA

Follow these steps to enable two-factor authentication:

  1. Go to Settings > Security
  2. Find the "Two-Factor Authentication" section
  3. Click "Enable 2FA"
  4. Open your authenticator app on your phone
  5. Scan the QR code displayed on screen
  6. Enter the 6-digit code shown in your app
  7. Click "Verify and Enable"

Recommended Authenticator Apps

Any TOTP-compatible authenticator app will work. Popular options include:

  • Google Authenticator - Simple and widely used (iOS, Android)
  • Authy - Includes cloud backup (iOS, Android, Desktop)
  • 1Password - Integrates with your password manager
  • Microsoft Authenticator - Good for enterprise environments

Backup Codes

After enabling 2FA, you'll receive a set of backup codes. These are essential:

  • Each code can only be used once
  • Store them in a secure location (password manager, safe, etc.)
  • Use them if you lose access to your authenticator app
  • Generate new codes after using several

Warning: If you lose both your authenticator app and backup codes, account recovery is difficult and may require identity verification.

Logging In With 2FA

Once 2FA is enabled, your login process changes:

  1. Enter your email and password as usual
  2. You'll be prompted for your 2FA code
  3. Open your authenticator app
  4. Enter the current 6-digit code
  5. Click "Verify" to complete login

Codes refresh every 30 seconds. If a code isn't working, wait for the next one.

Managing 2FA

From the Security settings, you can:

  • View backup codes - See your remaining unused codes
  • Regenerate codes - Get a new set of backup codes
  • Disable 2FA - Turn off two-factor (requires current code)
  • Change authenticator - Set up a new device

Lost Your Authenticator?

If you lose access to your authenticator app:

  1. Use one of your backup codes to log in
  2. Disable 2FA in settings
  3. Set up 2FA again with your new device
  4. Store new backup codes securely

No backup codes? Contact support with proof of account ownership for manual recovery.

Best Practices

  • Enable 2FA immediately after creating your account
  • Store backup codes separate from your password
  • Consider using an authenticator app with backup features
  • Don't share your 2FA codes with anyone, including support staff
Share this article
RX

ReconX Team

Expert in cyber intelligence, threat analysis, and security research. Contributing insights and analysis to help security professionals stay ahead of emerging threats.

Was this article helpful?