Remote - Good point, I had not thought of that...

I was approaching this question from a physical security stand point, as OS X has an pretty good fire wall.

As for key grabber logs, I use PGP to encrypt mine...