Earlier quoted context omitted.
This is where two factor authentication comes into play. Then you can have something you know (eg password) and something you own (eg phone). I quite like using Google Authenticator for my 2FA.
There are also problems with that: https://news.ycombinator.com/item?id=15068567
I should also add that to just highlight problems with one specific method of 2FA without establishing that it is still more secure than a single factor password, let alone acknowledging that other methods of identification are available, somewhat misses the point of 2FA.