not just malware (which, running under the same user profile, could probably get hold of cookies anyway), but especially in case your computer is stolen. If cookies were encrypted with the primary password in the same way as logins passwords, no one ...