+acda: please do enlighten me how one's gonna hijack my active SSL-session that's on a laptop that auto-locks when my face is not visible through its webcam? :)
Someone sends you a PDF exploiting an acrobat vulnerability (to put an example of making someone's else code run as your user), that takes out your browser cookies/sessions/whatever (or just install a keylogger), and sent them to someones else email. Not being admin/root don't enable them to modify the system in ways that your plain user can't, but can do everything else.
They don't. They call your bank after cracking the weak password on your email account for the details, reading your FB page for your birthdate, phone number, relatives and location/address, then authorise a bank transfer.
bogorad: I'm trying to tell whether you missed the point or are joking. TrueCrypt, FileVault, etc. are good ideas for physical security but they don't help when an active session is compromised, which is by far the dominant threat these days.
CMP magazine is sharing the all of candidates for the upcoming Canadian Mortgage Awards, the most exhaustive and representative list of the awards’ celebrated history.
Two-thirds of Canadians do not find getting a mortgage to be straightforward. And only 7% consider the mortgage process “stress-free.” Those findings come from a new ING Direct/Angus Reid poll...