NotebookCHECK - Notebook Forum

English => Miscellaneous => Topic started by: Redaktion on August 10, 2026, 10:00:40

Title: Account hijacked despite 2FA: a stolen cookie is enough
Post by: Redaktion on August 10, 2026, 10:00:40
Session hijacking happens after you sign in. Whoever steals your session cookie gets into your account without a password and without a second factor, and antivirus does not fix it because the stolen cookie keeps working. Chrome now ties sessions to the device with DBSC, while Firefox still stores its cookie database unencrypted. How the theft works and what really helps.

https://www.notebookcheck.net/Account-hijacked-despite-2FA-a-stolen-cookie-is-enough.1364307.0.html