Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You just immediately change the master password and delete previous versions of the database file ?


Not really. If someone gets into someone else's password manager they can easily get a copy of all usernames and passwords and, if they're quick enough, they can start resetting them / closing them / committing fraud.

So yeah change the password and delete previous versions is a good first step but everything else has already leaked to who knows where.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: