As far as I know, hackers hack emails through browser cookies. There is a lot of data available for purchase in the black market, which many people buy for business purposes, from there they get login access data for various platforms including emails, they are third parties, while actual hackers directly hack people's browser cookies through various phishing links through various means and from there they get access to various things. Exchangers without 2FA should be avoided, and many times accounts are hacked despite 2FA being set, this is because the email that the hackers hack has a 2FA backup in the same email. Google Authenticator now keeps 2FA codes as a backup in Gmail, in that case, if they get access to the email, they are automatically available. If the email of the Exchange account and the email of the 2FA backup are the same. You have to be careful in all aspects if you want to stay safe from hackers.
I don't actually know if it is possible to steal email and password by hijacking browser cookies because as far as I know there is a browser session where there is no email or password.
Here I think they try to hack websites and collect the email and password that is signed up on them. And then they try to do the brute force with the same email and the password on the others platform including the exchanges.
I think the only way to avoid these situations is to use 2-factor authentication and at
the same time check various websites where we can see if our email has already been exposed. If it is positive, then we should definitely change the email password.
Like you can see, one of my email was exposed with the password-
