ForgottenFlux@lemmy.world to Privacy@lemmy.mlEnglish · 1 month agoSignal under fire for storing encryption keys in plaintext on desktop appstackdiary.comexternal-linkmessage-square258fedilinkarrow-up1512arrow-down130cross-posted to: [email protected]
arrow-up1482arrow-down1external-linkSignal under fire for storing encryption keys in plaintext on desktop appstackdiary.comForgottenFlux@lemmy.world to Privacy@lemmy.mlEnglish · 1 month agomessage-square258fedilinkcross-posted to: [email protected]
minus-squarePossibly linux@lemmy.ziplinkfedilinkEnglisharrow-up16·1 month agoIf someone has access to your machine you are screwed anyway. You need to store the encryption key somewhere
minus-squarex1gma@lemmy.worldlinkfedilinkarrow-up3arrow-down4·edit-21 month agoYes, in your head, and in your second factor, if possible, keeping derived secrets always encrypted at rest, decrypting at the latest possible moment and not storing (decrypted) secrets in-memory for longer than absolutely necessary at use.
If someone has access to your machine you are screwed anyway. You need to store the encryption key somewhere
Yes, in your head, and in your second factor, if possible, keeping derived secrets always encrypted at rest, decrypting at the latest possible moment and not storing (decrypted) secrets in-memory for longer than absolutely necessary at use.