@DeltaWye @slash@cdrom.tokyo Probably not, I saw Sycra and LinusTechTips who got channel pirated in the past with a strategy like that. Even with a two-factor auth, it's easy to get inside the admin area with privileges if someone get your .mozilla pref with a website that keep the logged session open all the time.
I heard they started at Ytb/Google to re-ask password after sensitive changes, like changing the name of the channel or the main email or the password. That will probably limit the attacks.