How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
11–20 of 82 posts
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#12Go to Settings -> Show advanced settings -> Manage saved passwords -> Click on a "hidden" password -> Click on "Show" button -> Voila, password shown in plain text
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#13Earlier quoted context omitted.
On OS X, the passwords are probably stored in the Keychain which would be much better than this. Personally, I just disable all password storage on all browsers and use 1Password.
Firefox will use the OSX keychain only if you install Keychain Services Integration: https://addons.mozilla.org/en-US/firefox/addon/keychain-serv... . I highly recommend it.
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#14Passwords are a terrible way to authenticate people anyway. The sooner we start using certificates and smartcards, the better.
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#15Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#16Other side of an airtight hatchway? For this to be at all relevant, you're already got me running your binary with my user's permissions.
Hi there! Thanks for the great comment. I had a similar one on my blog that I responded to in the following way (I hope it helps!): "Good question! You're right - in these cases it is assumed malware is already present on the system and running in the context of the user. But there can simply be better protection. Consider Firefox's use of a Master Password. Even if an attacker is on the otherside of the airtight hat…
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#17Other side of an airtight hatchway? For this to be at all relevant, you're already got me running your binary with my user's permissions.
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#18Evidently, only 0.0085% of users toggle on the "Use a master password"
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#19Other side of an airtight hatchway? For this to be at all relevant, you're already got me running your binary with my user's permissions.
https://www.google.ru/search?client=opera&q=intitle:%22index...
Re: How Browsers Store Your Passwords (and Why You Shouldn't Let Them)
#20While it was intensely frustrating at the time I'm actually grateful that it is so hard to get an account. I provided considerable amounts of information, but it wasn't enough for them to hand it over.
Still, when I got access to my super secret hard copy of passwords, and loaded Chrome onto a new machine, and signed into Google, I was a bit alarmed by just how much stuff came back from them onto my local machine. I'm currently slowly migrating to Yubikey and a nice password safe and better passwords for everything.