Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. GitHub now requires 2FA

GitHub now requires 2FA

Kevin Okemwa Kevin Okemwa
March 15, 2023
2 min read

Last year, Microsoft made a significant change to GitHub’s authentication rules. The change required developers who build apps on the platform to enable two-factor authentication (2FA) by the end of 2023, as part of a platform-wide effort to secure the software ecosystem through improving account security.

GitHub announced that the 2FA requirement has already started rolling out to developers as of March 13, starting with smaller groups of both admins and developers.

The requirement will roll out to the rest of the developers gradually. The goal behind this is to ensure while elaborate measures are being put in place to ensure that the platform is secure and free from attacks, developers will still get work done in a timely manner with minimal disruptions.

According to GitHub:

Our 2FA initiative is part of a platform-wide effort to secure software development by improving account security. Developers’ accounts are frequent targets for social engineering and account takeover (ATO). Protecting developers and consumers of the open source ecosystem from these types of attacks is the first and most critical step toward securing the supply chain.

GitHub indicated that if you are selected for enrollment, you’ll get a notification via email alongside a banner on GitHub.com prompting you to enroll. You’ll then have 45 days to comply and configure 2FA on your account.

Once this period lapses, developers will be required to enable 2FA when trying to access the website. However, they can still pause the prompt for up to one week. After that, their access to the platform will be limited.

Developers can select from security keys, SMS, Time-based One-Time Password (TOTP) to GitHub Mobile 2FA, and more as their preferred 2FA method to secure their accounts. However, the company has highlighted that SMS-based 2FA isn’t as secure as the rest and that it’s no longer recommended under NIST 800-63B.

GitHub also indicated that it is currently testing passkeys internally. It features a combination of “ease of use with strong, phishing-resistant authentication.”

Do you use GitHub to write code? Share your thoughts with us regarding this change in the comments.

via: The New Stack

Share this article:
Previous Article Microsoft introduces Azure Firewall Basic Next Article Satya Nadella reelected as Chairman of Microsoft’s Board of Directors

Related Articles

Red Magic 11 runs PC games like GTA 5 and Cyberpunk 2077 on Android at 60 FPS

April 4, 2026

New Ryzen 9 9950X3D2 loses performance on air cooling

April 4, 2026

Legion Go 2 now costs $1,999 at Best Buy, pricing no longer makes sense

April 4, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Red Magic 11 runs PC games like GTA 5 and Cyberpunk 2077 on Android at 60 FPS
  • New Ryzen 9 9950X3D2 loses performance on air cooling
  • Legion Go 2 now costs $1,999 at Best Buy, pricing no longer makes sense
  • ELSA Launches GigaIO Gryf Portable AI System with Modular Design
  • NASA Artemis II astronauts face Outlook issues in space as mission hits unexpected software glitch

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Red Magic 11 runs PC games like GTA 5 and Cyberpunk 2077 on Android at 60 FPS
  • New Ryzen 9 9950X3D2 loses performance on air cooling
  • Legion Go 2 now costs $1,999 at Best Buy, pricing no longer makes sense
  • ELSA Launches GigaIO Gryf Portable AI System with Modular Design
  • NASA Artemis II astronauts face Outlook issues in space as mission hits unexpected software glitch

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy