Scary stuff.
I've had 2-factor authentication on my google account since it came out. There are some other good steps to consider in the post, too.
Everybody should read this article. It's pretty scary.

If this doesn't convince you to turn on two-factor authentication on your Gmail account, I don't know what will. Here's more info:
Shared publiclyView activity