3 ms·
Not sure how common it is but if the endpoint is compromised to the point of having a keylogger installed then it's basically already game over.
by thinkharderdev 4y ago
Not sure how common it is but if the endpoint is compromised to the point of having a keylogger installed then it's basically already game over.
- andi999 4y agoAh, I think I get the point, but is it really like this? The attacker would have to do everything through the endpoint, isnt this cumbersome for the attacker?
- thinkharderdev 4y agoIt would be, but if they had a keylogger installed then the endpoint is completely owned, in which case they could just exfiltrate the password database from memory. Or they can just pilfer authentication/session tokens directly once you logged in. More generally, making things more cumbersome (in the sense of requiring more steps) doesn't really provide any meaningful security since it can generally be automated anyway.