3 ms·
> First, I'm not aware of any tech giants who store passwords in the clear. Mozilla, Microsoft and Google all effectively do this in their browsers. Don't beli
by problems 10y ago
> First, I'm not aware of any tech giants who store passwords in the clear.
Mozilla, Microsoft and Google all effectively do this in their browsers. Don't believe me? Run the nirsoft webbrowserpassview. With just the files in your profile directory someone can dump your passwords. Sure, they're not "in the clear" but in practice it's just as bad if not worse. The number of accounts stolen with things like istealer is ridiculous. You can literally grab someone's entire lifetime of accounts in a fraction of a second.
I'd argue this isn't something a good developer would even attempt as it provides little more than a false sense of security to users. Good developers should be safe to absolutely refuse half measures like this as I do.
- throwaway729 10y ago> Run the nirsoft webbrowserpassview. This won't work if the user sets a master password (which I do). > Good developers should be safe to absolutely refuse half measures like this as I do. Yes, I mentioned this as a reasonable alternative in my original post.