Suppose a bad guy guesses the password for your throwaway Yahoo address. Now he goes to major banking and commerce sites and looks for an account registered to that email address. When he finds one, he clicks the ‘forgot my password’ button and a new one is sent – to your compromised email account. Now he’s in a position to do you serious harm.

– Barton Gellman