But what about situation when your mobile with 2FA is stolen. How can you recover access to your account ?
You should be using an open source 2FA authenticator app which allows you to export your encrypted database as a back up, such a Aegis or andOTP, and not Google Authenticator, which is the worst 2FA app out there. If your mobile with 2FA is stolen, then your accounts shouldn't be compromised because the attacker does not know your passwords, and you can still access your accounts by restoring from your 2FA database back up.