Hacker News new | ask | show | jobs
by RaphiePS 4398 days ago
The way I see it, every single app that uses email for password resets (usually by emailing a link, sometimes a code) already relies on the security of email.

Even if you have the most secure password in the world, if an attacker compromises your email account, they can simply send a password reset email. It's the weakest link.