Hacker News new | ask | show | jobs
by bartekrutkowski 993 days ago
Not in "another email", but can make some sense if done via "alternative communication channel". The idea is that the attacker obtaining some access to one device (let's say computer with email account containing the message with said file) doesn't have the full set of data required to open the file given password was sent with a different channel (say, text message via phone). Not the Final Word in security, but rather yet another layer of it.