Another reason the new sandbox is the virtual machine..... Bad Chrome disSecurity

Jon Kettenhofen coverturtle at gmail.com
Wed Aug 7 09:26:09 MST 2013


I don't use chrome, but Firefox can be rigged even if you use lastpass.  
I haven't bothered to count the times
that killing the Firefox process and starting it up again got me back 
into lastpass.  Same for a restart when
enabling or adding an extension.  Someone could write a popular 
extension that takes advantage of this.

The inverse is that lastpass could be more comprehensive in its 
coverage, covering most situations and
most applications that need a password.  This would be especially 
helpful when used on an android
or iOS machine, etc.

On 08/06/2013 02:41 PM, Ed wrote:
> http://blog.elliottkember.com/chromes-insane-password-security-strategy
>
> is Chrome the new attack vector to your stored passwords in other
> browsers? would a master password protect against this kind of slurp?
> Han's presentation at the last East Side PLUG meeting was really on
> point - thx
> ---------------------------------------------------
> PLUG-discuss mailing list - PLUG-discuss at lists.phxlinux.org
> To subscribe, unsubscribe, or to change your mail settings:
> http://lists.phxlinux.org/mailman/listinfo/plug-discuss
>
>



More information about the PLUG-discuss mailing list