Dangers of Remember Me Checkbox
#1
So many use the Remember Me checkbox when logging in to websites. These can be very insecure and dangerous - opening you up to hacking. I remove that option on all of my sites and, we've removed it here too. It's just not worth the risk to save someone a few seconds in typing their log in details. 

Let's say you lose your phone, ipad, etc. If you've saved your logins to your bank, work, etc - anyone that finds your device, or steals it, now has full access to important sites. This is like leaving your door open to your home when you leave. Anyone can get in and steal all that you own. 

The Remember Me checkbox uses a cookie stored on your computer to store your log in details. Hackers can steal these cookies and then have access as well. 

About 2,200 cyber-attacks happen daily, with a cyber-attack taking place every 39 seconds on average. In order to avoid your site being a potential security risk for your users, consider removing the Remember Me option. If it's a feature you have now, just let users know that you found that option to be a security risk for any website and have decided to opt in to better security. 

Here's an interesting article on how cyber criminals are using Remember Me cookies to take over Gmail accounts, with more info from the FBI. There are other sources of information regarding this topic. Please feel free to explore and ask questions. If you want to disable it on your own site and aren't sure how, feel free to ask as well. We can try to help. Smile
Reply
#2
Thanks Donna for bringing this issue up.  I just read your article.  I like articles that tell you details on how an account takeover can happen which helps to visualize the process and bring home the severity of using the "remember me" checkbox on any website.  It's actually terrifying how wide open we leave ourselves in the name of convenience by using "remember me". That is one box I don't check and it's surprising to recall so many websites allow it including websites that are of a financial nature, such as banks.
Reply


Forum Jump: