3 ms·
It is not extremely unlikely, all it takes is for you to unlock your password database on a device with some malware. The point of a second separate factor is
by davidt84 2y ago
It is not extremely unlikely, all it takes is for you to unlock your password database on a device with some malware.
The point of a second separate factor is to reduce that risk.
- duckmysick 2y agoIf there's malware on my device, isn't it game over already? Even if I have a second factor elsewhere, the malware can access session keys to whatever service I logged into from that device, among other things.
- davidt84 2y agoIt's certainly not good, but if you require 2FA to, say, change the email address attached to your account, or make withdrawals, or other important actions, it's not game over.
- Matumio 2y agoIn theory. But if everything is in the password safe, the malware can just grab that and upload? And cover its traces. As opposed to patching every application/service you might use, and get access only when you use it.