cross-posted from: https://infosec.pub/post/42164102

Researchers demo weaknesses affecting some of the most popular options Academics say they found a series of flaws affecting three popular password managers, all of which claim to protect user credentials in the event that their servers are compromised.…

    • floofloof@lemmy.caOP
      link
      fedilink
      English
      arrow-up
      31
      ·
      edit-2
      4 hours ago

      Well the specific point here is that these companies claim that a server hack won’t reveal your passwords since they’re encrypted and decrypted on your local device so the server only sees the encrypted version. Apparently this isn’t completely true.

    • tal@lemmy.today
      link
      fedilink
      English
      arrow-up
      26
      arrow-down
      1
      ·
      4 hours ago

      Yeah, the title there really doesn’t reflect the article text. It should be “you probably can’t trust your password manager if the remote servers it uses are compromised”.