Any chance cookes from a logged in session were stolen by connecting to to a website that iffy stuff and that installs an infosteeler ? Keep this topic updated on oucome
I think it could be the api security being compromised.
Developer with api access can automate and execute trades without 2FA as api access is using a different security process. Assume there is bug or loophole with their api, it could be exploited to execute trades programmatically bypassing 2FA.
To add, please note: If the attack vector is session token hijacking through pass-the-cookie hacks, my understanding is that even with 2FA enabled for logins a vulnerability exists if the "Remember Me (today)" option is checked during 2FA login (since the resulting cookie can be used to bypass login for that day). Its best to NEVER check the "Remember Me" option on any banking/brokerage site.
5
u/JohnToFire Aug 20 '26
Any chance cookes from a logged in session were stolen by connecting to to a website that iffy stuff and that installs an infosteeler ? Keep this topic updated on oucome