Live data from Hacker News

KeePassXC 2.4.3

keepassxc.org

1–10 of 67 posts

Re: KeePassXC 2.4.3

#4

KeePassXC still lacks in-memory protection, so I stay with KeePass, with all its .NET troubles.

Can elaborate more on the practical benefits of encrypted memory? Presumably this is mainly good for multi-user systems? On the average single-user system it seems that if you can already read memory there are 1000 other possible exploits that are cheaper / easier to perform (ie. keylog, screen capture, etc).

Re: KeePassXC 2.4.3

#5

KeePassXC still lacks in-memory protection, so I stay with KeePass, with all its .NET troubles.

I thought that it did now. For example this PR: https://github.com/keepassxreboot/keepassxc/pull/3020

Edit: Also, see this PR: https://github.com/keepassxreboot/keepassxc/pull/371

Re: KeePassXC 2.4.3

#6
Been using BitWarden since I stopped using LastPass (lost my 10 year old vault) anybody know of any good reviews of all the different types of password managers that go into the security flaws / considerations?

Re: KeePassXC 2.4.3

#8

KeePassXC still lacks in-memory protection, so I stay with KeePass, with all its .NET troubles.

What troubles? I recently started to use it, and so far I did not encounter any troubles. For me the killer feature of KeePass is that it allows me to safely use it without typing master password using -pw-enc command line argument. I hated to type my password every day over and over again with 1Password. Especially because I understand that it's very weak protection if someone already break in my computer.

Re: KeePassXC 2.4.3

#9

Been using BitWarden since I stopped using LastPass (lost my 10 year old vault) anybody know of any good reviews of all the different types of password managers that go into the security flaws / considerations?

There are a couple of recent posts / discussions on HN regarding the topic: https://hn.algolia.com/?query=password%20manager&sort=byPopu...
Post reply on HN