Quote:
Originally Posted by Crow
I'm assuming that Graal also stores them when they couldn't be used successfully. Therefore, you can easily get the encrypted version for every password. One could probably write a script to brute force that. I suppose using a key logger would be a little easier though 
|
Keyloggers are old, and would not be that much of a threat against your account security. Who manually types there graal password anyway? I can barely remember it.
Quote:
Originally Posted by fowlplay4
It could just wait for you to open Graal and steal the password from there. Your email and other accounts are likely to get hijacked before they take your Graal account via a key-logger, especially if you keep the password email there.
Another thing is that after you paste in your password you're going to want to clear it from your clipboard so it's not sitting there waiting to be picked off.
|
Unless your infected with some kind of multi-virus for example a RAT (Remote administration tool) those things can get pretty nasty, features from keylogging to clipboard logging to remote desktop even.
If you people are up on your security and monitor your outgoing connections, you should be safe. Anyway, graal has also implemented to send an email to allow another computer to play your account. So I would suggest at most to change your password every so often
