3 ms·
The dev does quite a lot actually to protect the program, including using things such as SecureString. However, even Microsoft have a comment against this sayin
by moritonal 4y ago
The dev does quite a lot actually to protect the program, including using things such as SecureString. However, even Microsoft have a comment against this saying:
"When porting code to .NET Core, consider that the contents of the array are not encrypted in memory. The general approach of dealing with credentials is to avoid them and instead rely on other means to authenticate, such as certificates or Windows authentication."
Which I read as: "If writing a program in C#, assume the memory can be read by apps on the same device."