I just found out that my account has two-factor authentication enabled, which it has never had for more than a decade. I didn't enable it, and now it seems to have a family member's number linked instead of mine. I'm not sure how to remove this or even if I want to keep it on.
2 Answers
It sounds like someone in your family might have logged in and turned it on, which explains the change to their phone number. You should double-check with them.
You might want to check this support link. It mentions that if you recently enabled two-factor authentication, you can actually lower your account security within two weeks of enrollment. If that's not an option, you could just keep it on and add another number that you trust.
I managed to sort it out! I got an email saying I can remove 2FA. Not sure how it got enabled in the first place or how they had that number.

Yeah, that's what I thought too. I asked them, but they don’t remember doing it or entering their number anywhere.