~x~
~X~>,?>>>
Even 2fa will not protect you if someone can hijack your already logged in session by stealing your cookies.
>>>
Did you mean that it is possible for them to access our account managing to steal cookies from our devices .
... cookies are login authorization and such ... so they can place bets; .. and toast our balance ..
>>> But they can make withdrawals ?
if the freebitco account is enabled with 2FA and the email on that account is enabled with 2FA, is there still the possibility that he, the thief, will be able to spend beyond our balance, be able to withdraw our balance?
.. one day I helped a friend to enable 2FA on his account,
it was via the web that I helped him and he did not take the necessary care in writing down his credentials; and then I asked him to get in touch with you, he entered, and you made available a method so that he could recover your account and disable 2FA // anyway ... he told me how it went .. he clicked for about 20 days on the emails that you sent him daily ... and he got it ... and then he lost his balance betting ... and he doesn't access the site anymore ... he had so much work to lose the balance on the bet, he bet all the balance on the wrong team, he says. ...
...but his email is certainly not secure, so there was the possibility, if his balance was large, that the hacker had access to his account via cookies stolen from his phone, and had access to his email, which he certainly did not had 2FA, wasted time for 20 days and disabled 2FA from his freebitco account, and managed to make the withdrawal, correct?
>>> I ask this question, so I can try to know if my account is safe on "freebitco" and if I risk losing my balance ... because .. I have an account with a lot of satoshis, and it is open on my mother's phone device and she clicks on the freeroll of that account, but the account has 2FA enabled and the email was registered with her safe with 2FA .. both without a recovery phone to avoid the "SIM SWAP",
..so my question is, because this account is always open on a mobile device, where she clicks whenever possible in the freeroll, and then she is always generating new cookies ... so there is still the possibility that he can get access and bet and be able to double my account balance?
and or worse
, lose everything? and yet, can he withdraw his balance just because it is open and even with 2FA enabled, or can he just spend the balance on bets?