al engineering exploit where someone would call into Amazon and add a credit card to an account they didn't own. They would then call right back and request a new email added to the account and use the freshly added credit card as authentication.
They could then use your Amazon account, or use the real card associated with the account as authentication for something else
Specifically, why would you still trust any other password manager?
My question is if those are really on a different set of math, as my understanding was that they were not, all told. If you can bust public/private key encryption, you can typically bust all encryption. Is that not necessarily the case?
How does this help an attacker get my passwords?
Thank you.