ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Hacking tool swipes encrypted credentials from password manager

    IT Discussion
    security keepass password hacking ars technica
    3
    4
    1.6k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      Brett at ioSafe Vendor
      last edited by scottalanmiller

      "Using a password manager is one of the biggest ways that average computer users can keep their online accounts secure, but their protection is pretty much meaningless when an end user's computer is compromised. Underscoring this often ignored truism is a recently released hacking tool that silently decrypts all user names, passwords, and notes stored by the KeePass password manager and writes them to a file."

      http://arstechnica.com/security/2015/11/hacking-tool-swipes-encrypted-credentials-from-password-manager/

      1 Reply Last reply Reply Quote 2
      • JaredBuschJ
        JaredBusch
        last edited by

        This is the not news of the day. Of course once an attacker is in your system, they will have access to all your stuff.

        But I guess it does good to scare people more. Maybe they will educate themselves a little. I do not hold much hope for that outcome though.

        B 1 Reply Last reply Reply Quote 3
        • DashrenderD
          Dashrender
          last edited by

          Sadly, all this kind of news does it make people afraid to use password manager - OMG if they get my master key they get everything. They rarely say - OMG if they infect my computer they get everything, which of course we all know to be true.

          1 Reply Last reply Reply Quote 0
          • B
            Brett at ioSafe Vendor @JaredBusch
            last edited by

            @JaredBusch said:

            Of course once an attacker is in your system, they will have access to all your stuff.

            Indeed. The moral of this story is simply that all bets are off if your systems are compromised.

            1 Reply Last reply Reply Quote 2
            • 1 / 1
            • First post
              Last post