Why is windows login insecure what am I missing?

Had a family laptop who forgot their password, windows 11 intel laptop. I followed the first YouTube video about overwriting the user password. I went into utilities from boot, opened terminal and did “control passwords2” and just set it to null. Then was able to log in. I guess the issue here was that a privileged system user terminal is accessible to anyone physically at the keyboard. This seems like really bad security practice why is this allowed what am I missing?

submitted by /u/AskedSuperior
[link] [comments]

from hacking: security in practice https://ift.tt/fLGnH5j
