Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
carterage
on Aug 28, 2018
|
parent
|
context
|
favorite
| on:
A walkthrough the AcridRain password stealer
So... fundamentally, encrypting data on the very same machine that retains the related keys, is tantamount to simply encoding the data in plaintext form without any real protection, yes?
buckminster
on Aug 28, 2018
|
next
[–]
It's slightly better than that. You can't decrypt the data when the user isn't logged in.
wiz21c
on Aug 29, 2018
|
prev
[–]
bah, if one can install a password stealing program, then he can as well install a key logger. With both of those, you become virtually transparent.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: