Yes they are hackable. desktop wallets even more so. I am yet to be convinced about the security of hard wallets also, as I know a guy who lost a ton of money during an update of his hard wallet.
yes, it is so better make a copy of your account password and make sure you keep it in the most safe place, and make it a habit to maek a strong password and make a change from time to time...