The damage is already done. Your private information was already leaked long ago. You can't make a sunk boat more wet.
Since we still use SMS as second factors (or primary, as some in this thread said they don't write down passwords but just use password reset links to login), it's not the best security hygiene