The author wrote a blog post about a missing feature in 2-factor authentication (2FA) and was recently contacted by someone who implemented the idea in their product. The author thinks this is great and more secure. The idea involves notifying the account owner when someone attempts to log in with the correct password but incorrect 2FA code. This notification is sent through a separate channel, such as email, to inform the account owner of the failed login attempt.