Live data from Hacker News

Logs in High Sierra Show Plaintext Password for APFS Encrypted External Volumes

mac4n6.com

1–10 of 123 posts

Re: Logs in High Sierra Show Plaintext Password for APFS Encrypted External Volumes

#3
post #2

Fixed in 10.13.2 - but wow, was High Sierra ever a sloppy release.

It’s appallingly sloppy. I can’t say I’m regretting my switch to essentially holding off on major OS upgrades until just before the next one is released. I wish Xcode’s current version still supported the most recent two OS versions, though.

Re: Logs in High Sierra Show Plaintext Password for APFS Encrypted External Volumes

#9

Please don't link to mac4n6, it serves malware on some page loads. The article author is aware of it but apparently doesn't have the ability to fix the issue

Not calling you out but I'd like to see a source for this. A quick web search for mac4n6 malware didn't turn up anything.

Re: Logs in High Sierra Show Plaintext Password for APFS Encrypted External Volumes

#10
post #6

That's pretty bad. It's been known for decades on other Unix systems that you shouldn't pass passwords by command line parameter, or even support doing so. I guess no-one told Apple.

Exactly. More to the point, even if it doesn't log it any more, I bet it's still on the command line itself.
Post reply on HN