Hacker News new | past | comments | ask | show | jobs | submit login

The problem is that browsers are the biggest attack vectors but also the most valuable targets. Getting a user's email password or cookie is probably the most damaging thing they could get unless you're the type to buy cryptocurrencies.



Not your bank? Email and bank login should be sufficient to change mfa and other settings and lock you out long enough to have forged checks drawn and cashed against your account.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: