

I would prefer, why 2fa everywhere is important. But not SMS!
If you have 2fa on accounts, your password is only 1 bit of the login. Passkeys or yubikeys will stop most login attempts dead, you can’t send them to anyone.
But yes unique passwords also help, as that 1 service is the only thing with that password.
We use both lynis and wazuh, wazuh is getting replaced with logpoint and Aws inspector.
I now need to check we pickup the lynis log