Hacker News new | past | comments | ask | show | jobs | submit login

Keyloggers? Social engineering around the password reset function?

I use 2FA on all my personal accounts that support it (Twitter, Github, Gmail, Namecheap, banks).




If a software can log your keypresses, it can probably steal your cookies and log in as you from your machine. Cookies stored by browsers are easily readable by processes running as the same user.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: