4 ms·
My two cents is that requiring the ability to snoop on a running process is a significant extra hurdle compared to simply reading the filesystem. Especially fo
by taway2012 13y ago
My two cents is that requiring the ability to snoop on a running process is a significant extra hurdle compared to simply reading the filesystem.
Especially for virtual machines which almost everybody is running on these days. An attacker can simply read the disk from under the OS.
Although I can understand why you might think it's not significant enough. I do agree that storing private keys in a separate user's process can help with security.